winbox.exe

MD5:
2df1e45a83fdba80d41cb0780871e59d

SHA-1:
b3f027a96cf62db2e04cc2d424c4d2f8ea30366b

SHA-256:
46c126919839642c28eb1eeb1eec37187b84ef1f9463e3c6eb304d35a35a57e9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:25:27 PM UTC  (today)

File size:
1.4 MB (1,511,424 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\winbox.exe

File PE Metadata
Compilation timestamp:
2/12/2015 2:01:38 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.23

CTPH (ssdeep):
24576:L7u4UN4jBN7JPA+2tYzq2ChadUZQQOu0UJ15MtHc8HIh1FjTm2jW6hU9RgH5ND02:XTjvJPA+2jPl0UJQa5Tm2phU9RgH5NDV

Entry address:
0x1284

Entry point:
55, 89, E5, 83, EC, 18, C7, 04, 24, 02, 00, 00, 00, FF, 15, 50, 98, 54, 00, E8, 64, FD, FF, FF, 55, 89, E5, 83, EC, 08, A1, 8C, 98, 54, 00, C9, FF, E0, 66, 90, 55, 89, E5, 83, EC, 08, A1, 70, 98, 54, 00, C9, FF, E0, 90, 90, 66, 90, 66, 90, A1, 3C, 03, 50, 00, 85, C0, 74, 41, 55, 89, E5, 83, EC, 18, C7, 04, 24, 00, 10, 50, 00, E8, FD, 5E, 0A, 00, BA, 00, 00, 00, 00, 83, EC, 04, 85, C0, 74, 15, C7, 44, 24, 04, 0E, 10, 50, 00, 89, 04, 24, E8, E9, 5E, 0A, 00, 83, EC, 08, 89, C2, 85, D2, 74, 09, C7, 04, 24, 3C...
 
[+]

Entropy:
6.5813

Code size:
1017 KB (1,041,408 bytes)

The file winbox.exe has been seen being distributed by the following 3 URLs.

http://192.168.0.254/.../winbox.exe

Scan winbox.exe - Powered by Reason Core Security