ultratorrent-1.1.0.4.exe

UltraTorrent

UltraTorrent.org

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
UltraTorrent.org

Product:
UltraTorrent

Description:
UltraTorrent Setup

MD5:
68ef2762a7953e44570fd367c795a383

SHA-1:
c0f423a433498c1fcfda481a194f9e1f2395a0bb

SHA-256:
85e392db62f12e26a812fcb5fc8119d63ab1c6ed1f42009b44ec1873a4fab13f

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/19/2024 11:42:40 AM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/Banker.T.gen
v6.4.7.1.166

Trend Micro House Call
TROJ_GEN.R047H0AHH13
7.2.124

File size:
4.6 MB (4,839,729 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\downloads\ultratorrent-1.1.0.4.exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:W0/X7Vv/r5r4nfPA3pDMtFaKJfge6SLqKl+J324jOZJue6CdLR:3P7JV+oRMtgK+zSLqhVOL96Cb

Entry address:
0x9B60

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 66, 95, FF, FF, E8, 6D, A7, FF, FF, E8, 98, C9, FF, FF, E8, DF, C9, FF, FF, E8, 0E, F3, FF, FF, E8, 75, F4, FF, FF, 33, C0, 55, 68, 17, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, E0, A1, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 9B, FE, FF, FF, E8, 02, FA, FF, FF, 8D, 55, F0, 33, C0, E8, C8, CF, FF, FF, 8B, 55, F0, B8, F0, CD, 40, 00, E8, 17, 96, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, F0, CD, 40, 00, B2, 01, B8...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file ultratorrent-1.1.0.4.exe has been seen being distributed by the following 12 URLs.

https://dw.uptodown.com/dwn/M4-ZTvPcSEUdnYKHB83IApvrNEa_uYQHlKg5x3xczQ2F5h-IGRFQ1fqrphWTo9FJZ43pGdeC3XCi50qVK507fuM8FBTpbvBbRTKW1fMjP9rITFpsVJDxC-xRri3ke1xz/UfBLf9Uw0tbMUMR9hUmk1Uw7UufqG7Rwpkd-jFROd41NydiZL9BamaLb-wCEwJEqTPgGS4sWWjBaUVLMgUHwOU6lzyw7JqwChUXa08T3nEtAtVLOYTuC9zBJPNfmD8Ba/DxmD8Ahe9c2TuIWWxEV38A95641MofXc72VY4oDDnk5OygeO1x3txeaQV8hWkBxob3W9eehHIwpuu4ILEA_QxfNaxwr092W2_n9rUHGmrUZKwwCcSSkbP_kL4E7spUax/.../

http://dw.uptodown.com/dwn/2WoS6Ky9WH6wAS-bfnZbaOhMcVWESmmWvSqQfy30OazPZKrBRY72sirU3hEFc32Ru45O4t27KCe6WsrvNUKeF2IEYzLM-4Bi2H-QRbWoK2A1I7jQrtfQtzCQ98rBlGcd/.../

http://dw.uptodown.com/dwn/Rk3-_IWXiM5CMyrCqbj6mQMEV44ycNdYPha_k74aaoUBbF6aOGav-c9aZ4Qi_OWRoEaqYAg71VxHla1F0t89cndlR-i7xPanUIDRsBQGkaILUdMt5Weuw3PqooNraI2t/NGjYxiGyc-SjH7MPjLjBKuO2yLMf9HnIeYx8sPnRR7Kwih0cJ1TBNerlNY6U1kQf0AaGsbhTJemo9EV9q5r_zI-xG--17Kmej-twF6Grvc8_wANOXQSJmxrXG2yVn0Bt/.../

http://dw.uptodown.com/dwn/0yEDJR6H3UhUlms8tDa8Zn0QoVzmYHpL7NfRlFm0UXROhy3WzGp1nx_FjDf0NSiBFyuO5-k-wrdYzU1u6cWlyhkTUGkK-590dZm3L7mvHhUJZJyHwkqGMa2e8TYah3z3/28FSSo8M65_bM7DMFiErJ2EcJIo1SuWeyAn3jWm0q4wJieNZi9rb1OMN4Hg8kTQQA-AIpsMgiBwXEtQrPswglfKJ5LmreLl9KKA4Ibe0MauXw1rh_ajvRRQY365BuGm4/0jORWtXqd4ELda9T-MiCttKqiTRMqc0UpTgQBLOUo_kf2pPOx1K5CCshhMYyNWv-Zwhc8GjJlg-aPW5TBgZpOSVh5fBKsjDQAOf-7d4masb_nQ9dotwS74kLoEfnw-ta/.../

http://dw.uptodown.com/dwn/PObg8j_5bysDRkxdJoTzH-GRsiHN4cYyzbZKkeJSuB1slYIdb5wKGrAqSxgnBdcvkzVWVV0uOGNu9-9qpidtTo8tBiInQvpAbvjE0TzUF_zYh1okfayGhJDoOv2FdAMh/E5lclWnS_mC73Z91rIsWVJs-jRsnI_YgTai35kWdKn_eUcmwAHldgvpjvey5VdaQgLGE_McUKbCyde7Odq4exP5egB6EqTE2ABQMptJGlurZA_-IBFPd2THY6dg5ZeQo/cUq5uWhkSnW_omHdborE_6iXynCERDJeFtVyYt2D4gaL5R_9bQCLyOvK1-V2d-KHDyqORIdbXFYkytz_WgLdzoZnPMpRgvjEkyd0eGyVfFt9eRku1OlazErVfej-brSw/.../

https://dw.uptodown.com/dwn/O6ua7muZ_nQXwxQQg0x-3V9zwV2WKJSLdwl0ilVzWz3UybFbamC5F9vtGoAHSrwqYk3sWvLKqS1EIbClKPSwbI3Ww8gRtEpjreXGgMEHoKIyZuxjPDn-95sQjMjWJJku/apfL0mTIsYfPjSIi4jXuUQgbeeWvkqQ9VMMDSQKc8KoJpp-qVzsV-QdPj96MlGCg2f8nku0Dt0F800YvvEjy2mU7f8kpG60ZAkdauPYOx4HZKmM4ALVsIky_3LjCPeAc/TXFA51AMC2ok_QrhUR5AIThVElqvbIuDo0S2pcP9Pcq2PSpWFqODWUcwKri8Mu9NoZ05ExYqaN95u4JtHxVZ1hDZCRq7Oi1M6AZfh9HmdgXQH-62-qeRTNRPEXZ5zFNG/.../

https://dw.uptodown.com/dwn/cbQRrr9fi1lYOyUsXtzKH8uXDSpZkAAHOsySb9_hx2yfeWT4DkTj4xYhfgL_28GUeyybIDUo5I1Ar50gxukzJTdYavlC0JcLxPeZ9cePZcdOdPRbTPEIr6pCyviYDbmI/nVkqlEX0TP3rzo3RBP0eSa7-lfH7bZSQcxz73kdo2eIj9_0tnxD08T9upyTfsFMFE31qZ3S6BB1VtgZYZir_PQ1AJQzYMnJjJufhYR1OQjHb1PiAtcV_Go0N97wQBrSY/bur7J7xKwjmJTJbs2UmzzmidA4nJLzcqOkXSlu0ehzyTsEWnMAo2CI15MIwU_cbMrT8idYy-6zSGgZFFBAk7gQDJ7Rdg8WA9QLZR4bvy9ECmSzC1OHv_bQ5Km8m0KMA5/.../

Scan ultratorrent-1.1.0.4.exe - Powered by Reason Core Security