reinas.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.uhu.es.
MD5:
d7d756c3916e17f18c7fea3772e66e5c

SHA-1:
54bc90d7a64a92034737bf99a0f050e6a6ae1ca5

SHA-256:
27cd7dd215254f47f73cb9fed54e07351383e49c576a0bf23987786b06ce3b0a

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/18/2025 7:57:20 PM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
Heur.Packed.Unknown
21983

Quick Heal
(Suspicious) - DNAScan
7.16.14.00

Trend Micro House Call
Suspicious_GEN.F47V0305
7.2.192

File size:
105 KB (107,520 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\reinas.exe

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
50.35

CTPH (ssdeep):
3072:TVMX2VlGdSCbwE6lPHCiFWrb16bwDttg:TV4cWieb82

Entry address:
0x3002F

Entry point:
55, 8B, EC, 57, DB, E3, D9, 2D, E8, 16, 41, 00, 68, F2, 16, 41, 00, E8, 51, 00, 04, 00, 83, 25, 1E, 17, 41, 00, 01, 75, 04, 6A, 0A, EB, 09, 33, C0, 66, A1, 22, 17, 41, 00, 50, E8, F4, FF, 03, 00, 80, 38, 22, 74, 0D, 40, 80, 38, 20, 74, 0F, 80, 38, 00, 74, 12, EB, F3, 40, 80, 38, 22, 74, 02, EB, F8, 40, 80, 38, 20, 77, 02, EB, F8, 50, 6A, 00, 6A, 00, E8, FE, FF, 03, 00, 50, E8, 93, 07, 00, 00, 5F, 5D, 50, E8, 84, FF, 03, 00, C3, 00, 00, 00, 00, 00, 55, 8B, EC, 51, 8B, 45, 0C, 89, 45, FC, 8B, 4D, FC, 83, E9...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
70 KB (71,680 bytes)

The file reinas.exe has been seen being distributed by the following URL.

Scan reinas.exe - Powered by Reason Core Security