themagichubinstallereu.exe

Overwolf Installer

Overwolf Ltd

This is a self-extracting archive and installer. The file has been seen being downloaded from download.overwolf.com.
Publisher:
Overwolf  (signed by Overwolf Ltd)

Product:
Overwolf Installer

Version:
1.30.4693.31563

MD5:
218896e1688bd6c27110df8d4604d683

SHA-1:
98164bd5c6fe5ee15561160cb2c8904ff1f3527a

SHA-256:
9eabebee66a6fe18696f87b0342aa0f88269edd4d85f7462630c118fb2e9cb41

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 7:19:31 PM UTC  (today)

File size:
1.2 MB (1,291,704 bytes)

Product version:
1.30.4693.31563

Copyright:
Copyright © Overwolf 2011

Original file name:
OWInstaller.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
12/26/2011 1:00:00 AM

Valid to:
2/11/2014 12:59:59 AM

Subject:
CN=Overwolf Ltd, O=Overwolf Ltd, STREET=Halechi 27 st., L=Bnei Berak, S=Tel Aviv, PostalCode=51200, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
02E4635116A814330262E360005D60EB

File PE Metadata
Compilation timestamp:
11/6/2012 6:36:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:qWSp3uQ96f8iZIQDwg+8VDJGJCShth5wzLvd+Y07rg/dtkJ3uQ9xT:FSYOlQD1V1RSh75wzLvv/dthS

Entry address:
0x11C046

Entry point:
FF, 25, 54, C0, 51, 00, 00, 00, 00, 00, 00, 00, 00, 00, 28, C0, 11, 00, 00, 00, 00, 00, 00, 00, 00, 00, AD, 4A, 99, 50, 00, 00, 00, 00, 02, 00, 00, 00, 8C, 00, 00, 00, 78, C0, 11, 00, 78, A2, 11, 00, 52, 53, 44, 53, F3, BE, 46, D1, 8E, BB, 83, 44, 9D, CB, 5B, 82, A1, 4A, F0, EC, 01, 00, 00, 00, 43, 3A, 5C, 4F, 76, 65, 72, 77, 6F, 6C, 66, 5C, 53, 6F, 75, 72, 63, 65, 5C, 4F, 76, 65, 72, 77, 6F, 6C, 66, 5C, 49, 6E, 73, 74, 61, 6C, 6C, 65, 72, 4E, 65, 78, 74, 56, 65, 72, 5C, 53, 6F, 75, 72, 63, 65, 5C, 4F, 57...
 
[+]

Code size:
1.1 MB (1,155,584 bytes)

The file themagichubinstallereu.exe has been seen being distributed by the following URL.

Scan themagichubinstallereu.exe - Powered by Reason Core Security