yandexpacksetup.exe

Windows Installer XML

Microsoft Corporation

Publisher:
Microsoft Corporation

Product:
Windows Installer XML

Description:
Software Installer

Version:
3.0.5419.0

MD5:
a84ca8c2f101d9a1c9727020f4479956

SHA-1:
3c07acb9f0e4f8c3fa5be68890384a541076586f

SHA-256:
62681d1e4c3d4f3b89b15547a94b11f33907432a25368521af0d906226988df7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 1:07:21 PM UTC  (today)

File size:
3.3 MB (3,417,952 bytes)

Product version:
3.0.5419.0

Copyright:
Copyright (c) Microsoft Corporation.  All rights reserved.

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\yandexpacksetup.exe

File PE Metadata
Compilation timestamp:
3/4/2016 9:06:21 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
49152:q1+fwsDGYCNoRf7GuifTks8TlNQ6CR0+wMRJ7kkF5aTe/C:qFYNibksYZAA

Entry address:
0x13A7E

Entry point:
60, 87, DE, F6, C1, 8D, 74, 09, F3, 0F, B6, FC, B8, 92, 5C, 72, AA, B7, A1, 0F, B7, C5, C6, C2, 6B, C6, C7, FE, 81, DF, C1, 76, 7C, CB, FF, CA, F6, C6, 01, F7, C7, 39, E3, E7, 77, 0F, BE, C8, E8, 57, 00, 00, 00, 86, D3, 86, CA, 69, E9, E7, A6, 27, E3, 84, F9, 25, C2, BC, A7, 01, 0F, B6, F7, 84, F6, BE, 1E, AC, 6F, 9D, 11, D6, 69, EA, B0, 18, 46, FD, 8B, DD, 0F, AF, ED, C6, C6, 6B, 8D, 0B, 00, D2, 81, E0, DE, 92, 0B, 7B, 0F, AF, C7, 77, 04, 2C, 32, 31, F0, 51, 20, D8, 81, D8, 40, 00, 78, B7, 5F, C7, C5, 5B...
 
[+]

Entropy:
6.8568

Code size:
166 KB (169,984 bytes)

The file yandexpacksetup.exe has been seen being distributed by the following URL.

Scan yandexpacksetup.exe - Powered by Reason Core Security