Setup.exe

War Thunder Launcher

Gaijin Arts

This downloadble file is typically blocked through Google's Safe Browsing technology in Chrome web browser. The file has been seen being downloaded from yup1.gaijinent.com and multiple other hosts.
Publisher:
Gaijin Entertainment   (signed by Gaijin Arts)

Product:
War Thunder Launcher

Description:
War Thunder Launcher Setup

MD5:
2da3a13d2e7f387c688b3597fde7cb06

SHA-1:
1b1a54735130eecfcae9791bc4136a6499bce7e3

SHA-256:
9e5a6b53180b1c86225023e152979b6aa7347deffcf6c461fc730ab0384488da

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 10:39:13 AM UTC  (today)

File size:
4.7 MB (4,881,144 bytes)

Copyright:
Copyright © 2011-2015 Gaijin Entertainment

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
1/21/2015 7:00:00 PM

Valid to:
1/22/2016 6:59:59 PM

Subject:
CN=Gaijin Arts, O=Gaijin Arts, L=Korolev, S=Moskovskaya oblast, C=RU

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
4F54E32AB8E1F866AFA02F8FA6688881

File PE Metadata
Compilation timestamp:
1/30/2013 9:21:56 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:v7Plt0hEenCSA9YLzm1dJ4PR/bgZtKmR0tDL1tv8fLi7A3MDw:bwE0TA9YWrJ4PR/07KmRO1qfL2M

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 2C, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 16, D8, FF, FF, E8, 65, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 2B, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 50, 86...
 
[+]

Entropy:
7.9619

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file Setup.exe has been seen being distributed by the following 2 URLs.

Scan Setup.exe - Powered by Reason Core Security