rw32b2a.exe

MD5:
f4f77deebe75d33cdc4de9f3e7492a4f

SHA-1:
95408af2c5bc0e240b66e142f955cb38eabc6308

SHA-256:
36cdc0cfb3a8b5297c76668763b84fc28233776c92a4c01db412946b689f8cbd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 11:04:51 PM UTC  (a few moments ago)

File size:
341.5 KB (349,696 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\model science\chemlab eval\rw32b2a.exe

File PE Metadata
Compilation timestamp:
11/12/1996 8:12:13 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
4.20

CTPH (ssdeep):
6144:2ln4XjTTDeuUybuylHDC+rgqtQSBn19mCSsRRaGpIBZ4TerI:2ln+auUybU+rHH19nSs6GpIBZLr

Entry address:
0x398F0

Entry point:
64, A1, 00, 00, 00, 00, 55, 8B, EC, 6A, FF, 68, 40, 43, 44, 00, 68, B4, EB, 43, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 60, 53, 56, 57, 89, 65, E8, FF, 15, 1C, 34, 45, 00, A3, 2C, C7, 44, 00, 33, C0, A0, 2D, C7, 44, 00, A3, 38, C7, 44, 00, A1, 2C, C7, 44, 00, C1, 2D, 2C, C7, 44, 00, 10, 25, FF, 00, 00, 00, A3, 34, C7, 44, 00, C1, E0, 08, 03, 05, 38, C7, 44, 00, A3, 30, C7, 44, 00, E8, 0A, 0D, 00, 00, 85, C0, 75, 0A, 6A, 1C, E8, 2F, 01, 00, 00, 83, C4, 04, C7, 45, FC, 00, 00, 00, 00, E8, 80, 1B, 00, 00...
 
[+]

Entropy:
6.6638

Developed / compiled with:
Microsoft Visual C++ v4.2

Code size:
265 KB (271,360 bytes)

The file rw32b2a.exe has been seen being distributed by the following URL.

Scan rw32b2a.exe - Powered by Reason Core Security