setup.exe

7-Zip

Igor Pavlov

This is a self-extracting archive and installer. The file has been seen being downloaded from www.lerya.org.
Publisher:
Igor Pavlov

Product:
7-Zip

Description:
7z Setup SFX

Version:
4.42

MD5:
35e9bc6dfb06905130b75978debfd89c

SHA-1:
c91c38b5825219242051f3c33943ab206d73563c

SHA-256:
025b17248fcebcf25f04d26ec011991c691184170148dac6a2f7e94cb48391b1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/8/2025 8:24:57 PM UTC  (today)

File size:
5.4 MB (5,652,088 bytes)

Product version:
4.42

Copyright:
Copyright (c) 1999-2006 Igor Pavlov

Original file name:
7zS.sfx.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\setup.exe

File PE Metadata
Compilation timestamp:
2/3/2008 11:51:44 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:GiKLfWEDI9QovhFnfl4sn+LkGiPtd7CIOB8BE0TYzQ6QAUDtIf3AzukdajTbj/:zKL+ED2VvDfl4sn3nT7CI7m6N6QFhIv7

Entry address:
0x12D30

Entry point:
E8, E1, 37, 00, 00, E9, 16, FE, FF, FF, 6A, 0C, 68, 10, 30, 42, 00, E8, 22, 27, 00, 00, 6A, 0E, E8, E9, 1B, 00, 00, 59, 83, 65, FC, 00, 8B, 75, 08, 8B, 4E, 04, 85, C9, 74, 2F, A1, 88, 61, 42, 00, BA, 84, 61, 42, 00, 89, 45, E4, 85, C0, 74, 11, 39, 08, 75, 2C, 8B, 48, 04, 89, 4A, 04, 50, E8, 9F, F6, FF, FF, 59, FF, 76, 04, E8, 96, F6, FF, FF, 59, 83, 66, 04, 00, C7, 45, FC, FE, FF, FF, FF, E8, 0A, 00, 00, 00, E8, 11, 27, 00, 00, C3, 8B, D0, EB, C5, 6A, 0E, E8, B6, 1A, 00, 00, 59, C3, CC, CC, CC, CC, CC, CC...
 
[+]

Code size:
105 KB (107,520 bytes)

The file setup.exe has been seen being distributed by the following URL.

Scan setup.exe - Powered by Reason Core Security