wrarulabinst1.exe

WinRAR UTILILAB Installer

Security Software Limited

Publisher:
Security Software Limited  (signed and verified)

Product:
WinRAR UTILILAB Installer

Version:
1, 0, 12, 0

MD5:
1143ddd0321fc34ff29ec0597b5e70b8

SHA-1:
d5b2dcd6a991d85e06f8b4b8082c646173aacafe

SHA-256:
0bb3ec9d045773cbb6c06725383ea10dcb40da5f08b31d6bfc74c2b7733d2e08

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 8:50:24 AM UTC  (today)

File size:
1.2 MB (1,217,567 bytes)

Product version:
1, 0, 12, 0

Copyright:
UTILILAB GmbH Copyright (C) 2016

Original file name:
installer.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\wrarulabinst1.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
10/19/2015 5:00:00 PM

Valid to:
10/24/2016 5:00:00 AM

Subject:
CN=Security Software Limited, O=Security Software Limited, L=Mayfair, S=London, C=GB, PostalCode=W1J 6BD, STREET=2nd Floor Berkeley Square House, STREET=Berkeley Square, SERIALNUMBER=08346158, OID.1.3.6.1.4.1.311.60.2.1.3=GB, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0664D7910A7CCA592FC58D6971CFEA9E

File PE Metadata
Compilation timestamp:
9/20/2016 9:12:36 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:jzg0x8bcrsZ5pH00zNEsxsS5Yx63ozx+BY8txgWR7F1HdrEH7E:jzJkcoxH00zGsxj5YA3oV+B5gWdF1Hf

Entry address:
0x7849B

Entry point:
E9, 84, 74, 02, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, 51, 53, 56, 57, 8B, 7D, 08, BB, 90, CF, 4C, 00, F6, 47, 0C, 40, 0F, 85, 78, 01, 00, 00, 57, E8, E9, 6C, 00, 00, 59, 83, F8, FF, 74, 2E, 57, E8, DD, 6C, 00, 00, 59, 83, F8, FE, 74, 22, 57, E8, D1, 6C, 00, 00, 8B, F0, 57, C1, FE, 05, E8, C6, 6C, 00, 00, 83, E0, 1F, 59, C1, E0, 06, 03, 04, B5, A0, 18, 4D, 00, 59, EB, 02, 8B, C3, F6, 40, 24, 7F, 74, 53, FF, 4F, 04, 78, 0A, 8B, 07, 0F, B6, 08, 40, 89, 07, EB, 09, 57, E8, 77, 6B, 00, 00, 59, 8B, C8, 83, F9, FF...
 
[+]

Entropy:
6.3887

Packer / compiler:
Xtreme-Protector v1.05

Code size:
642.5 KB (657,920 bytes)

The file wrarulabinst1.exe has been seen being distributed by the following URL.

http://utililab.av-updates.net/.../wrarulabinst1.exe

Scan wrarulabinst1.exe - Powered by Reason Core Security