ares.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.descargargratis.com a web site host known to distribute potentially unwanted software operated by FIRSERIA, S.L..
MD5:
a6a1e1002f517da74d20c3904ae24696

SHA-1:
82bf484db3ef02c24a703817a5247d224d85352a

SHA-256:
800b3d3c672b2bb30e191447d540218fbe2892f1ccea863034d8249a928a172f

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/19/2024 1:21:15 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
MSIL:Solimba-Z [PUP]
160518-2

File size:
355.5 KB (364,033 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\ares.exe

File PE Metadata
Compilation timestamp:
9/5/2014 1:55:54 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
6144:l7gLiFzeTBEnrmGPJECqv9o4cue0p2cRRQAvBH0et:l7WiFzeTOniGxECqVcuJ2cUApHNt

Entry address:
0xDFDC

Entry point:
8D, 42, 00, 68, 94, F4, 41, 00, 57, A3, F4, 8A, 48, 00, FF, D6, 33, 05, E0, 8D, 42, 00, A3, F8, 8A, 48, 00, 68, A4, F4, 41, 00, 57, FF, D6, 33, 05, E0, 8D, 42, 00, 68, C4, F4, 41, 00, 57, A3, FC, 8A, 48, 00, FF, D6, 33, 05, E0, 8D, 42, 00, 5F, A3, 00, 8B, 48, 00, 5E, C3, 55, 8B, EC, FF, 75, 08, FF, 15, C0, E0, 41, 00, 5D, C3, 55, 8B, EC, FF, 75, 08, FF, 15, C8, E0, 41, 00, 5D, C3, 55, 8B, EC, FF, 75, 08, FF, 15, CC, E0, 41, 00, 50, FF, 15, D0, E0, 41, 00, 5D, C3, 55, 8B, EC, 6A, 00, FF, 15, C0, E0, 41, 00...
 
[+]

Code size:
114 KB (116,736 bytes)

The file ares.exe has been seen being distributed by the following URL.

Scan ares.exe - Powered by Reason Core Security