winrar-x32-52b2.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from download.dodear.com.
MD5:
8d56dcda2676a430ed582ca9d476d34e

SHA-1:
80f8e4ef356060c16707c2070496fc82b0085334

SHA-256:
c79d00c568970bb6699a92e0f85c030e05c0bde681ac255e0e17708e78e7426b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 12:45:40 AM UTC  (today)

File size:
1.7 MB (1,791,740 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\winrar-x32-52b2.exe

File PE Metadata
Compilation timestamp:
10/27/2014 3:55:40 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:E/mDDYWwT0zEeoFNmt5aLgbb9WeMPintYZo/X/:E/AYWtzyF8/aMbb9WeMPitYA/

Entry address:
0x1D3ACA

Entry point:
8A, FF, E8, 01, 00, 00, 00, F5, E9, 58, FE, FF, FF, 56, 78, 5F, 35, 00, 01, 28, 9C, 95, 26, AA, 11, 0E, CF, 1E, 05, 13, 43, 46, 72, F6, 7C, 99, 7F, B4, 84, C2, 2D, 14, E8, B0, A7, 6B, 29, E0, 3F, 68, 4C, 62, 13, E7, 02, 64, 96, 5D, B7, A2, 56, DA, 49, 6C, BB, C8, 5D, 97, 8C, 7D, 9E, 20, A4, DF, 36, 66, 39, F9, FE, D7, 1C, 69, A4, 5A, E6, D8, 8A, 70, BE, AF, 36, 6D, 6C, 28, 4B, 5C, CC, 95, 75, CF, 5F, 40, BC, CE, 49, C7, B7, 23, 72, FC, 14, 81, B5, 07, 5C, 86, C1, 51, 67, 00, FE, 9A, D5, 08, 77, C1, 64, 29...
 
[+]

Entropy:
7.9509  (probably packed)

Code size:
160.5 KB (164,352 bytes)

The file winrar-x32-52b2.exe has been seen being distributed by the following URL.

Scan winrar-x32-52b2.exe - Powered by Reason Core Security