flyforheroinstaller.exe

Rawr Games LTD

Publisher:
Rawr Games LTD  (signed and verified)

Version:
1.0.0.0

MD5:
fcc307c42cfbde11bf2395c8148ea2d4

SHA-1:
ac0c7188f2fdf099e5bdadd67ff958e9c15f18f8

SHA-256:
8efd85bbe776a439943cb1e889c3649e0484d82f506796022f3e548237b8b91c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:25:29 PM UTC  (today)

File size:
5.2 MB (5,423,208 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
10/11/2012 7:00:00 PM

Valid to:
10/12/2013 6:59:59 PM

Subject:
CN=Rawr Games LTD, O=Rawr Games LTD, STREET=10 Falcon way, L=Basildon, S=Essex, PostalCode=SS165JA, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F609B1227EF1895707AF92C4A1381DBC

File PE Metadata
Compilation timestamp:
7/5/2013 12:34:42 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:oT1M3IdaeFVRUt4piLOxwBzX66r+i6GNQO702nTbzYtgGf6+:oQe9c4pi6AK6KONQW0sGLV

Entry address:
0x1FEF70

Entry point:
55, 8B, EC, 83, C4, EC, 33, C0, 89, 45, EC, B8, 0C, 5B, 5F, 00, E8, CF, BE, E0, FF, 33, C0, 55, 68, 42, F0, 5F, 00, 64, FF, 30, 64, 89, 20, A1, 14, B2, 61, 00, 8B, 00, E8, E1, CC, FA, FF, 8D, 55, EC, B8, 01, 00, 00, 00, E8, 14, 59, E0, FF, 8B, 45, EC, BA, 5C, F0, 5F, 00, E8, 83, 8E, E0, FF, 75, 4D, B8, BC, 5A, 5F, 00, E8, 83, 98, E2, FF, B2, 01, A1, 94, E9, 5E, 00, E8, 5F, 60, E0, FF, A3, 44, 16, 62, 00, A1, 44, 16, 62, 00, 80, 78, 70, 00, 75, 0C, A1, 14, B2, 61, 00, 8B, 00, E8, 7B, CC, FA, FF, A1, 44, 16...
 
[+]

Entropy:
7.1083

Developed / compiled with:
Microsoft Visual C++

Code size:
2 MB (2,086,912 bytes)

The file flyforheroinstaller.exe has been seen being distributed by the following URL.

http://178.33.232.215/FlyForHeroInstall.exe

Scan flyforheroinstaller.exe - Powered by Reason Core Security