wrar362.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from download2164.mediafire.com.
MD5:
7068323b698ab111131e4c11f9a9c9f3

SHA-1:
90ce3d5ec6b8f1c92712316de27e3ac8932df9cb

SHA-256:
4a048ff817568028175d72437f4f43179227396cfdc8d33d4fd0084e8a7596b2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 2:44:58 AM UTC  (today)

File size:
1.4 MB (1,443,986 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
5/5/2007 12:40:22 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
24576:46rTnbXF2whJl/xVs7JfalDykxkiJy4LKC4bA16W7hqWaNA0eMSUcMbUX:4CzZhJlngJEGQzLgU16W6ODU1UX

Entry address:
0x1000

Entry point:
60, 89, FD, FE, C5, 0F, BA, F9, A7, 0F, CA, 15, C9, CE, 39, E1, 81, E1, FD, 48, 05, F9, FE, C3, 0F, AB, D9, 8D, 0D, E8, 51, DA, F6, F6, D0, C0, D8, 24, 0F, AB, DA, E8, 26, 00, 00, 00, 69, C1, C9, E8, 03, CF, BD, 87, 4E, 19, CF, 0F, C1, D7, F6, D0, 8A, E7, 81, EB, A1, A1, 08, 00, 8D, 3D, 7C, 12, D5, 42, 8B, D7, 81, C3, 1F, A1, 08, 00, 8A, C9, 0F, BA, F3, C7, 8B, ED, 0F, BF, DF, 0F, AC, D7, 60, 0F, AD, EA, 81, EE, DF, 88, 00, 00, 0F, AB, FA, 81, EE, 56, 05, 00, 00, 59, BA, 60, B2, 4F, C5, 68, 49, 53, 1F, 00...
 
[+]

Entropy:
7.9443  (probably packed)

Code size:
77.5 KB (79,360 bytes)

The file wrar362.exe has been seen being distributed by the following URL.

Scan wrar362.exe - Powered by Reason Core Security