wrar531d.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.netzmechanik.de.
MD5:
1d3317cda0667f49427903a6060d792c

SHA-1:
1d7b16ce5bbf54702eb251cddfdb16a1ce16ba9a

SHA-256:
2353c356a4cd10386feec07c0a2fc9a7c0a756aba54feb6f43e18c7273edfc70

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 8:29:26 PM UTC  (today)

File size:
1.9 MB (1,982,600 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\wrar531d.exe

File PE Metadata
Compilation timestamp:
2/3/2016 9:38:36 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:5TkR49HXwLMMSnSQEudFPGH9Ka86CcOCQHo2wNo0S+h/6:5GiALfgPXc66o0NN6

Entry address:
0x1E06B

Entry point:
F2, 8A, E8, C7, C0, 94, 67, 08, 4C, 78, 07, BD, E1, 04, E2, 96, FE, C9, 72, 0B, 2A, D7, 0F, AF, EE, 69, C2, E7, 15, 25, 76, 8A, D0, 14, 2C, 8D, 35, 8E, 38, 0A, 37, 87, EB, 81, C7, BD, B5, 0C, 00, F3, 88, DF, 81, EF, EF, 8E, 0C, 00, FE, C2, 1A, ED, 87, CD, EB, 05, B8, B1, 5A, 26, A7, 69, D8, 34, 8B, E6, 9F, 89, CD, FE, CE, E8, 49, 00, 00, 00, 2B, C9, C7, C0, 7F, C4, 42, FC, F2, 85, DE, 4F, F7, C6, C0, FD, 6B, 77, 69, F1, CC, 79, 58, 1F, 45, 81, C1, E1, DE, 0A, 00, 85, F5, 77, 02, 89, D7, 81, E9, E0, DE, 0A...
 
[+]

Code size:
164.5 KB (168,448 bytes)

The file wrar531d.exe has been seen being distributed by the following URL.

Scan wrar531d.exe - Powered by Reason Core Security