wdrv-1052.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from buffalo.jp.
MD5:
b06c08aa0b0169dea71b0c11d5543902

SHA-1:
30c278e6831538e833acf8890164536b4f9c6155

SHA-256:
490bf7831ad6bb9073db693dbcb3ebd6b5b81475ffd377cc9471e3ed887dc451

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 5:41:40 AM UTC  (today)

File size:
184.4 KB (188,824 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\wdrv-1052.exe

File PE Metadata
Compilation timestamp:
4/26/1999 10:49:42 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
3.0

CTPH (ssdeep):
3072:RmuBJzgcobKtILhuIUyYZQXOVaHNjFZZGsi2RZvHUvE3mx6f+2fR70S0MCv/5E9:wubgcWKtILhutZQXOVMjFfGsi23HUc3v

Entry address:
0x46A8

Entry point:
64, A1, 00, 00, 00, 00, 55, 8B, EC, 6A, FF, 68, 00, 50, 40, 00, 68, F8, 47, 40, 00, 50, A1, F8, 63, 40, 00, 64, 89, 25, 00, 00, 00, 00, 8B, 0D, 8C, 72, 40, 00, 83, EC, 6C, 89, 01, 8B, 15, F4, 63, 40, 00, A1, 98, 72, 40, 00, 53, 56, 57, 89, 65, E8, 89, 10, E8, FF, 00, 00, 00, 8D, 55, D8, 8D, 45, D4, FF, 35, F0, 63, 40, 00, 52, 50, 8D, 4D, D0, 51, E8, E2, 00, 00, 00, 83, C4, 10, 68, 04, 80, 40, 00, 68, 00, 80, 40, 00, E8, CA, 00, 00, 00, 83, C4, 08, C7, 45, FC, 00, 00, 00, 00, A1, A8, 72, 40, 00, 8B, 30, 8A...
 
[+]

Entropy:
7.8830

Developed / compiled with:
Microsoft Visual C, 2.0

Code size:
14.5 KB (14,848 bytes)

The file wdrv-1052.exe has been seen being distributed by the following URL.

Scan wdrv-1052.exe - Powered by Reason Core Security