mbar-1.09.3.1001.exe

Malwarebytes Anti-Rootkit

Malwarebytes Corporation

This is a setup program which is used to install the application. The file has been seen being downloaded from download.bleepingcomputer.com and multiple other hosts.
Publisher:
Malwarebytes Corp.  (signed by Malwarebytes Corporation)

Product:
Malwarebytes Anti-Rootkit

Version:
1.09.3.1001

MD5:
67b0906b68164e807bd5691c67696da4

SHA-1:
c400e15a687e49e6ddb7010b7b8a5581f12e97ba

SHA-256:
403bd24be9a677726bc7ab2dd7425ab564f4e8a889a53b5f5805e18cf0f3e406

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:56:34 AM UTC  (today)

File size:
15.8 MB (16,563,352 bytes)

Product version:
1.09.3.1001

Copyright:
Copyright © Malwarebytes Corporation

Original file name:
mbar.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\mbar-1.09.3.1001.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/30/2013 2:00:00 AM

Valid to:
6/20/2016 1:59:59 AM

Subject:
CN=Malwarebytes Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Malwarebytes Corporation, L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6F36C4B74B4F8AB001F039D692A75B49

File PE Metadata
Compilation timestamp:
12/30/2012 9:50:02 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
393216:7C+2npmMGFiv+i6/zcdJQjPAt091Z8JRAtGcBR6v:+JGF++PcdYZmRAtGco

Entry address:
0x168BF

Entry point:
55, 8B, EC, 6A, FF, 68, 60, A0, 41, 00, 68, 50, 6A, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, DC, 81, 41, 00, 59, 83, 0D, 24, EB, 41, 00, FF, 83, 0D, 28, EB, 41, 00, FF, FF, 15, E0, 81, 41, 00, 8B, 0D, 04, CB, 41, 00, 89, 08, FF, 15, E4, 81, 41, 00, 8B, 0D, 00, CB, 41, 00, 89, 08, A1, E8, 81, 41, 00, 8B, 00, A3, 20, EB, 41, 00, E8, 1D, 01, 00, 00, 39, 1D, D0, C7, 41, 00, 75, 0C, 68, 48, 6A, 41, 00, FF, 15, EC, 81...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
88.5 KB (90,624 bytes)

The file mbar-1.09.3.1001.exe has been seen being distributed by the following 50 URLs.

http://download.bleepingcomputer.com/dl/e0d91acd3d254604e0bbe711c433a0fe/56e94b6d/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

http://gslink.us/mbar

http://www.programosy.pl/.../pobierz,malwarebytes-anti-rootkit,4.html

https://download.bleepingcomputer.com/dl/3f447829d880f90a32c62e0d3b9fdd51/58812dce/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

https://download.bleepingcomputer.com/dl/dc0a10b6e4f8164f69e4a831372bb2b8/57931d3b/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

https://download.bleepingcomputer.com/dl/f2e1e8fe34e43cdecc53a064fe2f0e23/5790c0ec/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

http://www.appscontentcentral.com/3 ur6gsq2bSIpxI ujipek28j_gNVC6O92QFCY8lgWYyBjulpaIiEdpOtBoxOuhqLOwDrD1yWzErFO7HObZ_4LnVW5jc_6yXs79k2SgX4gkq0mDOSKOf6YRh0iKOhe6zoH3E6WlnTDSjiIyWknQz0n4PO boKnE9WOrL_5AyUSsG6FkcZh28HLgWQzGTevez6OhT6PskF 0FY5La72yPX5NR_oHg18SpwMeYtAB0gxu9TULbxB7Zp2vtBDHYgYB7oN6TxtKBTSFnS4XIvMqzMs8b7WYfRkPJN7FSouSavROz k59MLaf5gx_XHRC62cdJTv fgDO7CAyZD_LODHaTKknAPz585DhXVlz_xc 8J5pqZ_BFRXHPNj pJrKfLAUyUeBUQBERBC_lxvWaoQD0CjOg9G48CwddxN9TbxVMBLknJXyLoIESi1275R JCXj5L239MlTWU2iqSjDDX3je45SD8PjsYmhcy4eo0UYNkJ9rXf2gIvb MDg7CmkQC52dtJ EczPse3UZkWpc7OaA5snYh1WS sD1OTnDnvlT1LbGKeyjjU c2nxV0izUlnWWMT4hjL4wo8MLnWTz 1qnOnzObFbIGi3TC4bGbC2p 1iE3NSfoZAvJYlnFVvga0qcNlUEN5-GzgAAES3eV4upavv1BJ6jCihYAMOHMLEEh6EbmvzPs3MvQRBTx8LYRqQV x biVMDwm4oUKYBf4d-e

https://download.bleepingcomputer.com/dl/eff12c52ebafd1d07321ac0f5aa0651f/583282b3/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

http://download.bleepingcomputer.com/dl/af7a5219929d178f8817424b4c8ac887/569ea55b/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

http://filepony.de/.../

https://download.bleepingcomputer.com/dl/a0bc99dcb44188fd19e4b757b3df1f4a/57e56f4c/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

https://download.bleepingcomputer.com/dl/d38ccf416a8b07d8f34d962c28ee1a2d/58044979/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

http://download.bleepingcomputer.com/dl/de4f1d82843f5d1b7b0232a65f6a2089/57dafea3/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

http://filepony.de/.../

https://download.bleepingcomputer.com/dl/3eedbe6cfe77d871982adb5a8294436b/571d7a3c/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

https://download.bleepingcomputer.com/dl/c83ee4b22eb92b01547b3922aaac6352/58060538/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

https://download.bleepingcomputer.com/dl/3908dee01ae11957b5216814f97c6c7b/57cc7051/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

http://filepony.de/.../

https://download.bleepingcomputer.com/dl/dd99dd5044a409e76fd815149363a175/582911e7/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

https://download.bleepingcomputer.com/dl/82daf848754314057f1f8d417c044914/57b8baa5/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

https://download.bleepingcomputer.com/dl/fd7169be4c36736eefb655e81ab502f3/57a90fae/windows/security/anti-rootkit/m/.../mbar-1.09.3.1001.exe

Latest 30 of 68 download URLs