nero-9.4.12.3_free-notoolbar.exe

7-Zip SFX

Oleg N. Scherbakov

This is a setup and installation application. The file has been seen being downloaded from soubory.instaluj.cz and multiple other hosts.
Publisher:
Oleg N. Scherbakov

Product:
7-Zip SFX

Description:
7z Setup SFX (x86)

Version:
1.6.0.2712

MD5:
63ebb187f003af24c139851bbfc9684c

SHA-1:
b65df90b1d6ab7abbbaa883c1645ec11bc670929

SHA-256:
5ae004b32c66677ce41be78e27ba40fc105fdc2276dcbcf557d10a88e6dc426a

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
5/1/2024 7:32:51 AM UTC  (today)

Scan engine
Detection
Engine version

IKARUS anti.virus
Trojan.Win32.Badur
t3scan.1.8.6.0

K7 AntiVirus
Trojan
13.192.14752

File size:
57.1 MB (59,902,132 bytes)

Product version:
1.6.0.2712

Copyright:
Copyright © 2005-2012 Oleg N. Scherbakov

Original file name:
7ZSfxMod_x86.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\nero-9.4.12.3_free-notoolbar.exe

File PE Metadata
Compilation timestamp:
12/31/2012 1:38:32 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1572864:YrFgViq54ZEbQS/k8KIZPH0P9Sz9cTh0vag8WvX:6gvH0P9S5cTh+j

Entry address:
0x1596F

Entry point:
55, 8B, EC, 6A, FF, 68, 58, 92, 41, 00, 68, 00, 5B, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, E0, 71, 41, 00, 59, 83, 0D, 64, FC, 41, 00, FF, 83, 0D, 68, FC, 41, 00, FF, FF, 15, E4, 71, 41, 00, 8B, 0D, 44, DC, 41, 00, 89, 08, FF, 15, E8, 71, 41, 00, 8B, 0D, 40, DC, 41, 00, 89, 08, A1, EC, 71, 41, 00, 8B, 00, A3, 60, FC, 41, 00, E8, 1D, 01, 00, 00, 39, 1D, D0, B8, 41, 00, 75, 0C, 68, F8, 5A, 41, 00, FF, 15, F0, 71...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
85 KB (87,040 bytes)

The file nero-9.4.12.3_free-notoolbar.exe has been seen being distributed by the following 50 URLs.

http://soubory.instaluj.cz/dwl/c7fd0d1b513e420e3a1db44155d23a29/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/057bccbc674d3393af76264a58b626df/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/64dcab7008c00bcbf01520d15c6902f2/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/4d2b500e4847fe1b9b3b2fe18484a0bf/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/b0201d5388afede272ff27943ccdaace/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/1683cc11766d8be2035f0e30ee1f75ce/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/4692ffc9a8937afd7011029b10f2520a/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/195682c2727beb0e8857071b5018f0d9/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/9aaeeb4d33ed1bf141c60f00dca9aaf3/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/6d6517c986b8d1c8a4e7cf465a7776ab/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/a4dceb93b0500555218c5765e0f394e2/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/0e55e8e4040c4a9dde2b64870ce3494f/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/2cf47a05c5ae00a14fcd3f0198e1fa13/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/e28249ec3d1723eadee9889ffd2b5bea/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/216679e313f35ed538ec2ef0da4964a6/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/2d1e861ab133aa137551234f8e329503/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/605df40f428ac2daea012d74fecf531d/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/f22dc9020365c4c166562966c6aebf1b/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/b49d86179cce7e74474dbb7873e12729/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/6ad5e18b3f0caa45c29d6eb1176ae941/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/eee1ceadd8412787c85e75a004c841f4/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/b2996d7632bd1bcd40ca7e09da6c568b/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/6ab4c6ec1062961e6458560ab7014a23/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/43f2b7e674b5fbcb83f675cce6892896/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/073af5d6fa096373d50a0e4efa2f31cc/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/7c01c96f625c84b7dc2a32cfec453318/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/f33d9c2c173417dc4b01fd1561803bc3/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://soubory.instaluj.cz/dwl/24277eb811f2057b2ae36be167254521/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/ad1494c28fe8f0f2262da3704a6c7dfd/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

http://files.instaluj.cz/dwl/6e1540042715567d9adc6d88ab289f76/audio-video/vypalovani-cd-a-dvd/.../Nero-9.4.12.3_free-notoolbar.exe

Latest 30 of 111 download URLs

Scan nero-9.4.12.3_free-notoolbar.exe - Powered by Reason Core Security