pr1.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.che.udel.edu.
MD5:
dd1d81a4187cddd85222c22d4b1773a9

SHA-1:
68f2a05d5d759e480d8f72f3823f4ed0a99791d6

SHA-256:
e95084d237899424d50b02280b0c9b3e09109b93f097d231924cae752cdc972d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 8:26:56 AM UTC  (today)

File size:
51.9 KB (53,160 bytes)

File type:
Executable application (Win16 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\pr1.exe

File PE Metadata
OS bitness:
Win16

CTPH (ssdeep):
768:UZ4zbfP7/8Yl5tYlotYlf2ZPsqVAX+YVNKU1fuDZTPa9n+oY2wvGNzeJjjuuWWk1:UZ12tsP+YuVaV+o++JeJXTWu8R/Ua

Entry point:
4D, 5A, A8, 01, 68, 00, 00, 00, 20, 00, BD, 00, FF, FF, 76, 0D, 80, 00, 00, 00, 10, 00, 7C, 0C, 1E, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Code size:
0 Bytes (1 bytes)

The file pr1.exe has been seen being distributed by the following URL.

Scan pr1.exe - Powered by Reason Core Security