winrar 5.21 -32x64 bit pl-full.exe

WinRAR

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from s6505.chomikuj.pl and multiple other hosts.
Product:
WinRAR

Description:
WinRAR Setup

MD5:
3da55190cca8d6b0f07e173ccb1e61bb

SHA-1:
ea2f31d7651ad796e1c2e4f7be8e59d3735bbc62

SHA-256:
633569311603df086956bb95fe5b3d924fc4dc680637e41776a0aa111331ca6a

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
2/27/2025 3:36:55 AM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
Suspicious_GEN.F47V0226
7.2.156

VIPRE Antivirus
Trojan.Win32.Generic.pak!cobra
40164

File size:
7.9 MB (8,319,198 bytes)

Product version:
5.21

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:/dgfs8DDI5dhHvRx89MQ3gn62fgKxiF0s6U7B9Pqor9DiRRStpSZkjUiMCrexVl:FgQ5dh5xeMzDQZ/rYEtp8kjBul

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

The file winrar 5.21 -32x64 bit pl-full.exe has been seen being distributed by the following 50 URLs.

http://s6505.chomikuj.pl/File.aspx?e=X3WFGVanJll9oaYjGjXSO-ZvziGW2aImrrIW6gtDMO5A63o-ScDOy9W8hp-3xxZxWaAz1Z1ddazm6m2D6ghbrR64WaWekmiBUB4dRiiUBqYayXlApaSaAOEGtD83bgxuvvq9_m5m5REGXbuHOtXWGk_yJpnvYMoF7rSAXzJc33U&pv=2

http://s8851.chomikuj.pl/File.aspx?e=X3WFGVanJll9oaYjGjXSO1Y5D4QO3hkcGgwjwnZcNJeJ6p96Djq0NfkSTnI4MMZj1zukaiwtekHP3C6CsAwpQAMb2RcRHx-I71HkNaQSc3Q4h1Sj-_54j_vzBbNOZvx4ruSvF61B85JHkg9nR5D653aTSbNXEPor2WltvtSdNK-GwqpvaOAks2fqiX-SuM02&pv=2

http://s6505.chomikuj.pl/File.aspx?e=X3WFGVanJll9oaYjGjXSO3SQkSv0u-hd3nSQ3uI_9_orvuIRfCQH4kb_XH3falcpwK2By_rnwceeHk1-K3IS0Ryvbltsl03GCFGBGWZ452B-kWT8aX2LrNsY7QCQMhOgqTal6VYEorPqY7d-aHPDLqOGQmQE8L1j603AfGJxC1g&pv=2

http://s6505.chomikuj.pl/File.aspx?e=X3WFGVanJll9oaYjGjXSO-ZvziGW2aImrrIW6gtDMO5KQTa8KHW7NHxjZwD1RjWiPI_gdru-0_dMK1WNh-YXFeMi8VeTp8XWhpI7rOzZi0RUWCc1ZmVU-qRpkqJKTTfMnO7qkQtcBERP8q_Er6uA0uUdI9ra0p3ZH2qrZf47GRaanLf556zUCtnM3J5BFW-c&pv=2

http://s6505.chomikuj.pl/File.aspx?e=X3WFGVanJll9oaYjGjXSO-ZvziGW2aImrrIW6gtDMO5fweiYKve54di96o4XOh5Z8yq4iGLom67Px1jOU4pirC4CojvfqJ_Auy2ImSsECSP7Af88OeSKoM-fBdakQSxX-sQWStrFV89F33VqyAqX8UpxEM4n7Z75yLafsQMcU6dmNHvJaGLIqUb5opa9p7vK&pv=2

http://s6505.chomikuj.pl/File.aspx?e=X3WFGVanJll9oaYjGjXSO-ZvziGW2aImrrIW6gtDMO6mXEhode0AXIZ6R3BU_ps5iEbKrvPOqPX6AB5BimcNXcN8hk6c9dS2wXUB8-2GMKOHXFvQ_X2TVgyrLFZhQnjLLLkwHKsTJaHiAYv585rbqhO91Ew9-yeDJlHeOSk2cbFeaOUJKObwqn5IoK7BIBat&pv=2

http://s6505.chomikuj.pl/File.aspx?e=X3WFGVanJll9oaYjGjXSO-ZvziGW2aImrrIW6gtDMO4BnYtIrHjYWhCsMfM_tOMAvmBffyla_5DWrdvuyq6bvNC-v9hnTgVN_oIf81i3rAnzZHyFjS7-yXfREMtsFMfbDkBQDrvhYwjhaCZwYufY9FhgHja34mpGm6Rkg5a7PvlKO6lSSI0hdqDPrCHSBBKG&pv=2

http://s6505.chomikuj.pl/File.aspx?e=X3WFGVanJll9oaYjGjXSO1Y5D4QO3hkcGgwjwnZcNJdCsHn_V-pZcTtOJnqa7zTx5Ff8gZvM0z5zsvYoSS1DxTbs12kqjxqIrkvGLNKBpszG_t70bstYGdIM2Xs2qSaWnPDSP4-oegsxIBXBPQcotvOBIgVWgB1eKwGOW0hcyxfkOKxoQ-TQjhaQOC349ReG&pv=2

http://s6505.chomikuj.pl/File.aspx?e=X3WFGVanJll9oaYjGjXSO-ZvziGW2aImrrIW6gtDMO7sADvWh3He5KW-I8CqVPSF6MG2JPwIBKDtqVhc7aL_ZcNmx9pzItUu_p7DoeRLbTDBDt-oTCVqdReZB1spUBt87Udx2-EVvDAvsRCc-8yfyyM_LVl_-K87g0El_gyo47591kwFxl64HicuZiT1iLUI&pv=2

http://s6505.chomikuj.pl/File.aspx?e=X3WFGVanJll9oaYjGjXSO1Y5D4QO3hkcGgwjwnZcNJd03aPfllVI2VBMO3co14d5rfE7eRQhDdm4vLxrlUx7nDg9jJSXDv9Otv8N5B18QbXPTKsNOYARwiqjVr6kJFw5wareqehKT0YMLeyw3wZ9WfN0nn_g2n3xG3Tl726wGkezl_KIo2NaKsZ-QuhUYJUL&pv=2

http://s6505.chomikuj.pl/File.aspx?e=X3WFGVanJll9oaYjGjXSO-ZvziGW2aImrrIW6gtDMO7VbFDL5OCpvwfoaPl1voZPbwatrSsfnFwGwxhSiWkxfDa8pb1JRpDB8MUP_kC8HqDmNp7TVXut1vbT6oz7zXMXL76mH6D_fcOVx4rK9SDOpgvog66OGmKLa0omCXclLTRcBC6LNZAp9RBpMs2z1oky&pv=2

about:internet

Latest 30 of 53 download URLs

Scan winrar 5.21 -32x64 bit pl-full.exe - Powered by Reason Core Security