itunes6464setup.exe

This is a self-extracting archive and installer. The file has been seen being downloaded from secure-appldnld.apple.com.
MD5:
17b28119e2713d5c98819f931fc60cef

SHA-1:
f60de7790310cc2c8acfc26acef786475cba2110

SHA-256:
9dc2ed90d377b5ef9ef1840949c027b5bc1adf59767142f48b5df5926d0620cd

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/26/2024 5:08:08 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Detection.Undefined
7.0.302.0

File size:
5.6 MB (5,836,275 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\itunes6464setup.exe

File PE Metadata
Compilation timestamp:
12/18/2015 1:50:59 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:jmz8Bl/txNQVIB/IgEs/k6VuuF6O/WCMG9IJ0Ig+6Jmdl3BClsL:yz8Bl/txNQ2IgHskuGHGOIKkdlnL

Entry address:
0xDF30

Entry point:
48, 83, EC, 28, E8, 9F, 50, 00, 00, 48, 83, C4, 28, E9, 12, FE, FF, FF, CC, CC, 48, 89, 0D, E5, F2, 00, 00, C3, 40, 53, 48, 81, EC, E0, 05, 00, 00, 83, 64, 24, 70, 00, 48, 8D, 4C, 24, 74, 33, D2, 41, B8, 94, 00, 00, 00, E8, 64, C9, FF, FF, 4C, 8D, 5C, 24, 70, 48, 8D, 84, 24, 10, 01, 00, 00, 48, 8D, 8C, 24, 10, 01, 00, 00, 4C, 89, 5C, 24, 48, 48, 89, 44, 24, 50, FF, 15, 4F, 72, 00, 00, 48, 8B, 9C, 24, 08, 02, 00, 00, 48, 8D, 54, 24, 40, 48, 8B, CB, 45, 33, C0, E8, 21, 68, 00, 00, 48, 85, C0, 74, 3B, 48, 83...
 
[+]

Entropy:
7.9970  (probably packed)

Code size:
79 KB (80,896 bytes)

The file itunes6464setup.exe has been seen being distributed by the following URL.

Scan itunes6464setup.exe - Powered by Reason Core Security