vray_demo_30001_max2013_x64.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from download1.chaosgroup.com.
MD5:
a5c76c7f244db46c188256713e3046cc

SHA-1:
637f2dd937abfd09ed895a9a4612322197e85a64

SHA-256:
f29e0c7bc685ceea703be77da044d2afa39d54ebb783aadec49c8a15ec51a2b6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 6:16:43 PM UTC  (today)

File size:
91.9 MB (96,331,195 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\vray_demo_30001_max2013_x64.exe

File PE Metadata
Compilation timestamp:
1/30/2014 1:58:34 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
1572864:wK/BR/ZO4XFUTF3x2GmGtADm8TR+X60Uys2Vlq1ga+JWI7ryvCtarHLMmDms0SVN:wYBpZxXF06GmGtN8TsXWsqua8ry68RD5

Entry address:
0x18666C

Entry point:
48, 83, EC, 28, E8, FF, 0E, 01, 00, 48, 83, C4, 28, E9, 56, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 8B, C1, 49, 83, F8, 08, 72, 53, 0F, B6, D2, 49, B9, 01, 01, 01, 01, 01, 01, 01, 01, 49, 0F, AF, D1, 49, 83, F8, 40, 72, 1E, 48, F7, D9, 83, E1, 07, 74, 06, 4C, 2B, C1, 48, 89, 10, 48, 03, C8, 4D, 8B, C8, 49, 83, E0, 3F, 49, C1, E9, 06, 75, 39, 4D, 8B, C8, 49, 83, E0, 07, 49, C1, E9, 03, 74, 11, 66, 66, 66, 90, 90, 48, 89, 11, 48, 83, C1, 08, 49, FF, C9, 75, F4...
 
[+]

Entropy:
7.9876  (probably packed)

Code size:
1.9 MB (2,019,328 bytes)

The file vray_demo_30001_max2013_x64.exe has been seen being distributed by the following URL.

Scan vray_demo_30001_max2013_x64.exe - Powered by Reason Core Security