m2bob - patcher.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from ni220471_1.vweb02.nitrado.net and multiple other hosts.
Version:
1.0.0.0

MD5:
3dbbbc4d0882edc9630b8a2304500719

SHA-1:
bbab1971cce76f6c55c893ce2a84164fa6ba90a9

SHA-256:
135ced1314c4cb67ed8ac1fceb06a5ffeb8ef394e209b4eef630bf431b045f7b

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/23/2025 1:34:38 PM UTC  (today)

Scan engine
Detection
Engine version

Zillya! Antivirus
Adware.MultiPlug.Win32.501143
2.0.0.2571

File size:
3.4 MB (3,557,376 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\m2bob - version 5.1.2\m2bob - patcher.exe

File PE Metadata
Compilation timestamp:
10/14/2015 7:02:03 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
49152:2ygpDZZ7/fTISg332McTYg4UeCTtw0ONGi:PgpzAIMg4UecHON

Entry address:
0x2184

Entry point:
EB, 14, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, AC, 10, 6F, 00, 9C, 2A, 40, 00, A1, 9F, 10, 6F, 00, C1, E0, 02, A3, A3, 10, 6F, 00, 52, 6A, 00, E8, 69, D5, 2E, 00, 8B, D0, 89, 15, A7, 10, 6F, 00, E8, 68, E8, 2D, 00, 5A, E8, 4A, E4, 2D, 00, E8, BD, E9, 2D, 00, 6A, 00, E8, 7A, A6, 2E, 00, 59, 68, 48, 10, 6F, 00, 6A, 00, E8, 3D, D5, 2E, 00, A3, A7, 10, 6F, 00, 6A, 00, E9, 31, 92, 2E, 00, E9, AC, A6, 2E, 00, 33, C0, A0, 91, 10, 6F, 00, C3, A1, A7, 10, 6F, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B...
 
[+]

Code size:
2.9 MB (3,080,192 bytes)

The file m2bob - patcher.exe has been seen being distributed by the following 3 URLs.

http://ni220471_1.vweb02.nitrado.net/M2Bob - Patcher.exe

Scan m2bob - patcher.exe - Powered by Reason Core Security