wrar54b3.exe

win.rar GmbH

This is a setup program which is used to install the application. The file has been seen being downloaded from www.winrar.es and multiple other hosts.
Publisher:
win.rar GmbH  (signed and verified)

MD5:
a7c7918be21d7a469c77f14865da8c05

SHA-1:
687b6d5a426cec536a61a3ea2f045824711aa838

SHA-256:
7b82338c2cc4800025228cc03caf650251d3e94b2239b69304168bcd4e728eae

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 2:03:53 AM UTC  (today)

File size:
1.9 MB (1,962,416 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\wrar54b3.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
6/1/2015 5:30:00 AM

Valid to:
6/1/2017 5:29:59 AM

Subject:
CN=win.rar GmbH, O=win.rar GmbH, STREET=Marienstrasse 12, L=Berlin, S=Berlin, PostalCode=10117, C=DE

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00FE46A10AD94269C3DD225C13645352E4

File PE Metadata
Compilation timestamp:
7/2/2016 4:48:45 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
49152:0YGF52wW/URGT2+PmqlPjRsck36y2FuSHKZ5:0Xr4XT2+1lVs/6XfHE5

Entry address:
0x1C415

Entry point:
E8, 65, 04, 00, 00, E9, 80, FE, FF, FF, 3B, 0D, B8, 91, 43, 00, F2, 75, 02, F2, C3, F2, E9, DA, 05, 00, 00, C3, 83, 61, 04, 00, 8B, C1, 83, 61, 08, 00, C7, 41, 04, 60, FF, 42, 00, C7, 01, DC, 08, 43, 00, C3, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, 28, 3C, FF, FF, C7, 06, E8, 08, 43, 00, 8B, C6, 5E, 5D, C2, 04, 00, 83, 61, 04, 00, 8B, C1, 83, 61, 08, 00, C7, 41, 04, F0, 08, 43, 00, C7, 01, E8, 08, 43, 00, C3, 55, 8B, EC, 83, EC, 0C, 8D, 4D, F4, E8, A7, FF, FF, FF, 68, 30, 6C, 43, 00, 8D, 45, F4, 50, E8, 9C...
 
[+]

Entropy:
7.9417  (probably packed)

Code size:
182.5 KB (186,880 bytes)

The file wrar54b3.exe has been seen being distributed by the following 50 URLs.

https://www.winrar.es/.../40?PHPSESSID=f4c39fb2d263b2fabab632453da1c98a

https://www.winrar.es/.../40?PHPSESSID=73307ee8598603c23738cd6a2cc08e5b

http://filehippo.com/download/file/.../

http://lb.cdn.m6web.fr/d/c/a/2b5abb3d33b29fe6058f4c22d07bb964/577ce6cf/soft/.../winrar-32-bits_5-40-beta-3_fr_9632.exe

http://fs41.filehippo.com/9855/.../wrar54b3.exe

https://www.winrar.es/.../40?PHPSESSID=18b4d9078b8efc1323ab160de07ebe0c

http://s6427.chomikuj.pl/File.aspx?e=-rI690WJYKgG_TcLc3S0wHtfKVc1i3_AYOpkZR-lG_IYOTXVPld_utK2Wmo0HxENDepvAxxAIWZvefaD5xkAorq3N4sefutmHj9YcK95vsK8ojHlBaGaKikzB-DHUoAL4PsnBGF48YydIelIUy2oZ4_KimDC0Tih7Md5T2QSZlm8gvjw26vrH_--KpPM8Yrv&pv=2

https://www.winrar.es/.../40?PHPSESSID=693523ec9ea11e405d6e4aea488b9ef1

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

https://www.winrar.es/.../40?PHPSESSID=0f3d31cecaa05d4de047bd370f703de6

https://www.winrar.es/.../40?PHPSESSID=c8645cd30882724e2349874b0d826b4b

https://www.winrar.es/.../40?PHPSESSID=e6b14b2ea8ef23587f10afc83700467c

https://www.winrar.es/.../40?PHPSESSID=4936f4d3b2005fb9242b72c91721a74a

http://filehippo.com/download/file/.../

https://www.winrar.es/.../40?PHPSESSID=5c92958e1a383216e2363d8551c719ef

http://filehippo.com/download/file/.../

https://www.winrar.es/.../40?PHPSESSID=e6702b52f2422b135c7b8d281a2be339

https://www.winrar.es/.../40?PHPSESSID=5d4539d0097300f6fd6eb5ba66368683

http://lb.cdn.m6web.fr/d/c/a/a64d9b1063dd779560836f0aa4d8030a/5793af7f/soft/.../winrar-32-bits_5-40-beta-3_fr_9632.exe

https://www.winrar.es/.../40?PHPSESSID=65978f36066d1986166b069d9f26d6d8

https://www.winrar.es/.../40?PHPSESSID=1d216ca096a188fbcd0c8f29a1cd5326

https://www.winrar.es/.../40?PHPSESSID=96602bda7cfa5406395aff22bfe7b0fc

http://filehippo.com/download/file/.../

https://www.winrar.es/.../40?PHPSESSID=ee4aafbdaff45fcc819ff347ebc07b8a

http://filehippo.com/download/file/.../

http://d.winrar.es/d/40z1467988965/.../wrar54b3.exe

http://filehippo.com/download/file/.../

Latest 30 of 124 download URLs