cod4-mw_patch.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from fileshare1260.depositfiles.com and multiple other hosts.
MD5:
ebd1e87b4dc12727ceaa050d8a056393

SHA-1:
babd5a39a0f582b5641b371f1246d686fb64b4a5

SHA-256:
3d649797f8a69f5a645cc64201d08c963f7d2c5ce0fac5167a2ef8d7ba3d2ea4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/30/2024 10:17:16 AM UTC  (today)

File size:
505.6 MB (530,171,228 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
6/9/2012 6:19:49 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12582912:k7uqLUGHvxNzxgLNpdxYNdt6QDwfZkB0vyLhMhDaLWkUTWyO6rQoed:k7xUGHJoLpxAYQDwfOuqFMcKkUqyfrjg

Entry address:
0xAC87

Entry point:
E8, E3, FE, FF, FF, 33, C0, 50, 50, 50, 50, E8, 9F, 30, 00, 00, C3, 56, 57, 8B, 7C, 24, 0C, 8B, F1, 8B, CF, 89, 3E, E8, 8F, AB, FF, FF, 89, 46, 08, 89, 56, 0C, 8B, 87, 24, 0C, 00, 00, 89, 46, 10, 5F, 8B, C6, 5E, C2, 04, 00, 8B, C1, 8B, 08, 8B, 50, 10, 3B, 91, 24, 0C, 00, 00, 75, 0D, 6A, 00, FF, 70, 0C, FF, 70, 08, E8, 0E, B1, FF, FF, C3, 56, 8B, F1, 8B, 06, 85, C0, 74, 07, 50, FF, 15, C4, 40, 41, 00, 83, 26, 00, 83, 66, 08, 00, 83, 66, 0C, 00, 5E, C3, 56, 8B, F1, 80, 7E, 04, 00, 75, 34, 68, F4, 44, 41, 00...
 
[+]

Entropy:
7.9981  (probably packed)

Code size:
73 KB (74,752 bytes)

The file cod4-mw_patch.exe has been seen being distributed by the following 19 URLs.

http://fileshare1260.depositfiles.com/auth-1484346236e7db60d5d710e0cc851f84-187.14.7.89-88208564-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.depositfiles.com/auth-1483344461af6b043c957fcd5590732c-94.21.176.143-79288088-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.depositfiles.com/auth-1483997279a8b99809f96fc4aa04c202-85.11.129.66-85312771-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1150.dfiles.eu/auth-147878374231063ab6c7e0acb3e96548-95.47.218.36-35103068-159571995-guest/.../COD4-MW_patch.exe

http://fileshare1260.depositfiles.com/auth-1483950743c719c637c30e516a407f83-125.212.122.201-84838304-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.dfiles.eu/auth-147344006420e8ebabc89a8481c6ce13-178.79.0.121-2676823094-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.depositfiles.com/auth-1475940638849c8bc0cab1818b6897b4-109.92.189.108-6158224-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.depositfiles.com/auth-1473763208e2f904714a06790041a62b-87.13.187.230-2680547174-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.dfiles.eu/auth-14721542026c149d8f95a8fe49726c0f-87.0.21.52-2661872315-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.depositfiles.com/auth-14751947930e2e29f99d7344a677b8b4-181.222.236.166-2697028643-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.dfiles.eu/auth-1476014522c62532117e81121938e338-2.233.236.128-6937726-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.dfiles.eu/auth-1471436124c87592be4b07042a5351f0-94.66.58.135-2653683932-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.depositfiles.com/auth-14789952046f87525e180f90eb86da83-177.202.134.2-37271344-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.dfiles.eu/auth-14717754654499f9a37795d95f20a9a4-51.254.133.169-2657588621-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.depositfiles.com/auth-1475066984a9c3d4331ce9efaa0ab8a3-85.65.0.220-2695724832-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.depositfiles.com/auth-1479852216d7fd7225757876c47dab1f-94.68.66.103-45924357-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.dfiles.eu/auth-14789584544dcd1edd6baac4e4116771-176.190.78.75-36815078-168633767-guest/.../COD4-MW_patch.exe

http://fileshare1260.depositfiles.com/auth-146973707962692f4b38bbd4fa8cacc5-68.49.52.35-2634252978-168633767-guest/.../COD4-MW_patch.exe

Scan cod4-mw_patch.exe - Powered by Reason Core Security