wubi.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from ftp.ticklers.org.
MD5:
5c976b1d655b10df3b10811e77b09a25

SHA-1:
c3dbd49f167d5324b5624be34fc20a7631da19ea

SHA-256:
6a8fe5b9cfca3cdf8ae36311a6287ad06293642a0e52d3671f6a545725b48c0c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 2:03:07 PM UTC  (today)

File size:
1.4 MB (1,467,844 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\wubi.exe

File PE Metadata
Compilation timestamp:
7/8/2010 11:53:03 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.56

CTPH (ssdeep):
24576:G66HWPK2bDyrlELoxmU1NBXCFKAr2KAHHwmDc/A+IKdK8pRTTFBQUgxA5ADbs+u6:G6mW/OrlELNUaKG22mDc/A+IKdpPHLQN

Entry address:
0x1110

Entry point:
55, 89, E5, 83, EC, 14, 6A, 02, FF, 15, E4, 91, 40, 00, E8, FD, FE, FF, FF, 8D, B6, 00, 00, 00, 00, 8D, BC, 27, 00, 00, 00, 00, 55, 89, E5, 83, EC, 14, 6A, 01, FF, 15, E4, 91, 40, 00, E8, DD, FE, FF, FF, 8D, B6, 00, 00, 00, 00, 8D, BC, 27, 00, 00, 00, 00, 55, 89, E5, 53, 83, EC, 04, 8B, 45, 08, 8B, 00, 8B, 00, 3D, 91, 00, 00, C0, 77, 3B, 3D, 8D, 00, 00, C0, 72, 4B, BB, 01, 00, 00, 00, 50, 50, 6A, 00, 6A, 08, E8, 00, 4C, 00, 00, 83, C4, 10, 83, F8, 01, 0F, 84, D6, 00, 00, 00, 85, C0, 0F, 85, 90, 00, 00, 00...
 
[+]

Entropy:
7.9915

Packer / compiler:
Dev-C++ v5

Code size:
20 KB (20,480 bytes)

The file wubi.exe has been discovered within the following program.

Ubuntu  by Ubuntu
Publisher's description - “Fast, free and incredibly easy to use, the Ubuntu operating system powers millions of desktop PCs, laptops and servers around the world. Ubuntu will work with your existing PC files, printers, cameras, music players and smartphones — and it comes with thousands of free apps.”
www.ubuntu.com
About 1% of users remove it
 
Powered by Should I Remove It?

The file wubi.exe has been seen being distributed by the following URL.

Scan wubi.exe - Powered by Reason Core Security