prsetup.exe

Allied Way International Holdings Limited

This is a self-extracting archive and installer. The file has been seen being downloaded from proxyrental.net.
Publisher:

MD5:
116cac9f3d1c0c1026fa0134b6455d36

SHA-1:
3ae9ada21d5827373bd1ea1bfe61d0114ca313c0

SHA-256:
782b9cac2dbef6596536f34a59af923f412ed4ffd819d87ba2990ef5a56361b8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2025 2:05:53 AM UTC  (today)

File size:
2.4 MB (2,464,320 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\prsetup.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
10/5/2015 2:38:43 AM

Valid to:
12/18/2018 4:19:39 AM

Subject:
E=support@proxyrental.net, CN=Allied Way International Holdings Limited, O=Allied Way International Holdings Limited, L=Hong Kong, S=Hong Kong, C=HK

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121D7C165529E9CC587A70ACBCFA7E8775F

File PE Metadata
Compilation timestamp:
8/14/2016 2:45:54 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0xFCE7

Entry point:
E8, 09, 05, 00, 00, E9, 80, FE, FF, FF, 3B, 0D, A8, B0, 42, 00, F2, 75, 02, F2, C3, F2, E9, 7E, 06, 00, 00, E9, 89, 4C, 00, 00, 55, 8B, EC, 83, 25, 60, 79, 45, 00, 00, 83, EC, 2C, 53, 33, DB, 43, 09, 1D, AC, B0, 42, 00, 6A, 0A, E8, BD, 1B, 01, 00, 85, C0, 0F, 84, 74, 01, 00, 00, 83, 65, EC, 00, 33, C0, 83, 0D, AC, B0, 42, 00, 02, 33, C9, 56, 57, 89, 1D, 60, 79, 45, 00, 8D, 7D, D4, 53, 0F, A2, 8B, F3, 5B, 89, 07, 89, 77, 04, 89, 4F, 08, 89, 57, 0C, 8B, 45, D4, 8B, 4D, E0, 89, 45, F4, 81, F1, 69, 6E, 65, 49...
 
[+]

Code size:
132 KB (135,168 bytes)

The file prsetup.exe has been seen being distributed by the following URL.

http://proxyrental.net/.../CDU6GsehvWnY5FdCsQ=

Scan prsetup.exe - Powered by Reason Core Security