utorrent221.exe

uTorrent.CZ

This is a self-extracting archive and installer. The file has been seen being downloaded from www.utorrent.cz.
Publisher:
emc  (signed by uTorrent.CZ)

Description:
µTorrent Setup

Version:
2.2.1 (25534)

MD5:
828b90bfd4e69d81c4e54aabe480db63

SHA-1:
e4390e33919cee2f55ee00abc2afebc14160e0a9

SHA-256:
5c1d895409876765c863916aa365c64fef686adf6e3de49adbfa30527e03bf7e

Scanner detections:
6 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/19/2024 5:45:56 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Packed/MPress
7.1.1

AhnLab V3 Security
Trojan/Win32.Chifrax
2014.05.28

McAfee
Artemis!828B90BFD4E6
5600.7105

Trend Micro House Call
TROJ_GEN.F47V0514
7.2.159

Vba32 AntiVirus
Trojan.BAT.MakeDirs
3.12.26.0

ViRobot
Trojan.Win32.S.Chifrax.1939048
2011.4.7.4223

File size:
1.8 MB (1,939,048 bytes)

Copyright:
©2011 BitTorrent Inc.

File type:
Executable application (Win32 EXE)

Language:
Czech

Common path:
C:\users\{user}\downloads\utorrent221.exe

Digital Signature
Signed by:

Authority:
uTorrent.CZ Root CA

Valid from:
4/1/2014 12:00:00 AM

Valid to:
3/31/2015 11:59:59 PM

Subject:
CN=uTorrent.CZ, E=info@utorrent.cz

Issuer:
CN=uTorrent.CZ Root CA, E=info@utorrent.cz

Serial number:
2057884ECABCCD84467BB0317DD24110

File PE Metadata
Compilation timestamp:
6/9/2012 3:19:49 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:OZr9eSgb8pd0kaFh2j2gAiG6KSDTeGAb7gIZM3e:OZzgbQd0NhejAijKyeGAbE1e

Entry address:
0x3A190

Entry point:
60, BE, 00, F0, 42, 00, 8D, BE, 00, 20, FD, FF, 57, 89, E5, 8D, 9C, 24, 80, C1, FF, FF, 31, C0, 50, 39, DC, 75, FB, 46, 46, 53, 68, 9F, 8C, 03, 00, 57, 83, C3, 04, 53, 68, 8B, B1, 00, 00, 56, 83, C3, 04, 53, 50, C7, 03, 03, 00, 00, 00, 90, 90, 90, 90, 90, 55, 57, 56, 53, 83, EC, 7C, 8B, 94, 24, 90, 00, 00, 00, C7, 44, 24, 74, 00, 00, 00, 00, C6, 44, 24, 73, 00, 8B, AC, 24, 9C, 00, 00, 00, 8D, 42, 04, 89, 44, 24, 78, B8, 01, 00, 00, 00, 0F, B6, 4A, 02, 89, C3, D3, E3, 89, D9, 49, 89, 4C, 24, 6C, 0F, B6, 4A...
 
[+]

Code size:
48 KB (49,152 bytes)

The file utorrent221.exe has been seen being distributed by the following URL.

Scan utorrent221.exe - Powered by Reason Core Security