realalt.exe

Real Alternative

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from s10574.chomikuj.pl and multiple other hosts.
Product:
Real Alternative

Description:
Real Alternative Setup

Version:
1.9.0.0

MD5:
16e2ba345157556685672c6e01cf39f7

SHA-1:
a82feb7e66d04eb02f40d4fe8f219b56f029ef18

SHA-256:
a813ba7316a51a35c83a045426de81ffe68e4205f22d2ce129b2a96762cfa2a2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 5:17:56 PM UTC  (today)

File size:
4.9 MB (5,147,589 bytes)

Product version:
1.9.0.0

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\Program Files\mediatray\realalt.exe

File PE Metadata
Compilation timestamp:
6/20/1992 6:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:J8V8GyyN34EkABdAleSUYFMsYHZBwN0+Vs84YONadfHR+OLJfs3k+c+:CzyyNrBdmebYF1PO+Vs8Q4fHgOBQk+c+

Entry address:
0x9A58

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 6E, 96, FF, FF, E8, 75, A8, FF, FF, E8, A0, CA, FF, FF, E8, E7, CA, FF, FF, E8, 0E, F3, FF, FF, E8, 75, F4, FF, FF, 33, C0, 55, 68, 0B, A1, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, D4, A0, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 9B, FE, FF, FF, E8, 02, FA, FF, FF, 8D, 55, F0, 33, C0, E8, AC, D0, FF, FF, 8B, 55, F0, B8, E4, CD, 40, 00, E8, 1F, 97, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, E4, CD, 40, 00, B2, 01, B8...
 
[+]

Entropy:
7.9967

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
36.5 KB (37,376 bytes)

The file realalt.exe has been seen being distributed by the following 35 URLs.

http://s10574.chomikuj.pl/File.aspx?e=8grPxVsJCBZA6y4ZSU6BDV9CfrDKk3f8X8fQLeWr8z38iH6gWyc5gYaByoLPK4QhJzjRm9o2dUewe0Lr67Nvl7zCTM3Tu82OLa8ejZDc6AvlFU0JizaMeRI_-2rhi6D-wXS6P0E9A4hOh4Zf71dgfID_qMP-VIyw7FrNlMxQ8cAbmGc5721MS2ll7d_Br-LF&pv=2

http://s7132.chomikuj.pl/File.aspx?e=8grPxVsJCBZA6y4ZSU6BDaC8UeqOYlxu-UiUXnG-9L9Jv_rveaKPL6wnXtoC7PWpEt6A-cWtRNiFVwUpRMSMwdo4FK4AFw0yqFz4yI6uyK0mdaEwbetvxALSFH5Q2IUCv0fODsqQVT5poNUH491l7wbnBNz09AnNBqztSPYpKSxHeJu4pc7LhCZq9Fg4D4zn&pv=2

http://s7132.chomikuj.pl/File.aspx?e=8grPxVsJCBZA6y4ZSU6BDRIVBIJEdzQR1sN1l-aM54ovU9Sun8kjbymixFJMjkzXgBlTe3okPI2JEWnFWIPAycU0Cnlaeu7GoIic9GyxVoIB2td20zXWHu2IHL58-vO8twCWC95f5jjxIgRGocPd8fWvkNkL1MXDCGo78aFq5iQkF0DIE6K0v701Cdqvp7La&pv=2

http://s6785.chomikuj.pl/File.aspx?e=8grPxVsJCBZA6y4ZSU6BDbFQ6rT8xfGxZD-L780kRbXkOzjADESOIFoxU-TP2hjk4OFA8cnM5slo-R-gHThSfC2-aF7006vPFtxxSSWTsmQnFxDOkd9RFuEopwXWx4iuHDxfBO207ieeHelMlc8vygApvf2oGoJvyy1n_AUPWlODkB4_ksIVETIhw8SZ1new&pv=2

http://s7132.chomikuj.pl/File.aspx?e=8grPxVsJCBZA6y4ZSU6BDWfi74mPbZ-bcuEu-969FFacp3NikmQJ30ih92qmiXeHERetfwKuRUidTFS3iTBZLJIk1iF0ncTeWoIVt_UAu8W-DYxhZpZfnn50pZxQjutQVe96nDo-Sz2doGFFQPJUT8OwlCAl-ct-eXgFo1dITvlA7M11OnxSJ8eb96HIsUXg&pv=2

http://s7132.chomikuj.pl/File.aspx?e=8grPxVsJCBZA6y4ZSU6BDbCraE41v_dqELO8NE2aKrkjVW-9x6GGMTiid1hfvY2PqZENAmch_r7YdK-tL4BxTOSvBiReh6BLrG_kxKr-Ot6DgqygoXy1IMLahNBWFTNkn-U7wFS17wmv_1A6AqPVF--OEdHCeRHmCRExPZoa9FNvFt2quf_Ng-LX-4sxkZ4T&pv=2

http://s7132.chomikuj.pl/File.aspx?e=8grPxVsJCBZA6y4ZSU6BDZxdfWwT9a1pY9Ba0bQUeyvkvPBsa7wQ-D6ucoSQUoed8au77Dx9xnrZuCM8xIqsYoG30zNXMuM2O6Eo6SMYzdqww8Dk0saC7WZy32Ppw317G51VrVXTzndcZazweNd3rg&pv=2

http://get-2.wpapi.wp.pl/a,78814252,f,multimedia/.../realalt190lite.exe

http://s7132.chomikuj.pl/File.aspx?e=8grPxVsJCBZA6y4ZSU6BDb0hyzCW8frWUYdI_XBMZY4jK-B_D__oOZ2DH6f3VTnTcWjsJMmjGkYdd4GL9QBMNWdPjEIW3QGTcig34upKNLEgxZAcQge9fMGHUMpqcA1EPL9B49n2DuwYBbP6Txb2ZNOO1rSTmodJHyEo6LxsAs16d7NLCKCW4Nr1EiWwbLIx&pv=2

Latest 30 of 35 download URLs

Scan realalt.exe - Powered by Reason Core Security