uncheckit_setup_2.1.6_84937.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from 113.171.224.177 and multiple other hosts.
MD5:
71160ee7c681a0f7fad0580cd40e8fac

SHA-1:
6974ae3e177a48f3c746c4a286de642565d29c4d

SHA-256:
905bc6750a2959ae277e355060351c1da1c118275df236bbeb5c8b0a8240549e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/3/2024 2:31:55 PM UTC  (today)

File size:
2.9 MB (3,019,216 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\uncheckit_setup_2.1.6_84937.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
49152:HV2HwEx6B2zgFEmaYvctJCeF/nM3w4u3blCu6SwjIWYryPE+YBkzoghgGwM:12QrTfCJPF/M3Nurl0RjIheJ9KGh

Entry point:
2F, B7, 79, 23, 3E, C8, 27, CF, AA, EF, 4C, 3F, E1, 91, B6, 5C, 5B, 43, 38, 7C, D1, 43, 72, 7B, B0, 16, 67, CA, D1, 66, 6D, 2F, 06, B7, 67, 99, BC, 8E, 94, 60, 06, B7, 67, 99, BC, 8E, 94, 60, 06, B7, 67, 99, BC, 8E, 94, 60, C1, A3, 2C, C0, BC, D4, D1, A6, 4C, 05, E0, 1E, 16, 0D, 31, 1A, 84, 76, AF, 40, E8, 84, 1A, E2, 06, AE, 02, 34, 9E, 95, 72, BD, 99, FF, 0C, 49, B6, 10, 83, 5D, 8C, B5, AF, 29, AC, B9, 21, 91, C9, 05, 82, A2, 7A, D1, 13, CC, 8E, 0E, 17, 4F, 0C, 25, 4B, BE, F4, FB, 8B, 52, EE, CD, 4B, D6...
 
[+]

The file uncheckit_setup_2.1.6_84937.exe has been seen being distributed by the following 6 URLs.

http://113.171.224.177/.../uncheckit_setup_2.1.6_84937.exe

http://10.130.24.196:6610/d3k5kdxhccmsw7.cloudfront.net/.../uncheckit_setup_2.1.6_84937.exe

http://113.171.224.214/.../uncheckit_setup_2.1.6_84937.exe

http://113.171.224.246/.../uncheckit_setup_2.1.6_84937.exe

http://43.255.113.227/d3k5kdxhccmsw7.cloudfront.net/.../uncheckit_setup_2.1.6_84937.exe

Scan uncheckit_setup_2.1.6_84937.exe - Powered by Reason Core Security