xmoto-0.4.0-win32-setup.exe

This is a self-extracting archive and installer. The file has been seen being downloaded from download.tuxfamily.org.
MD5:
6d445b790eeadf8e0eb9de6fc250cee6

SHA-1:
bd27563a106a576d9ccdd10d652d9235e9f2a003

SHA-256:
74bffe2e7f33ce3e230c168dc158d3dede453af0eae43a5b3c8c9d61bb469693

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/26/2024 4:40:34 AM UTC  (today)

Scan engine
Detection
Engine version

NANO AntiVirus
Trojan.Win32.Small.lwhc
0.28.0.57630

ViRobot
Backdoor.Win32.Small.57856
2011.4.7.4223

File size:
19.5 MB (20,456,622 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
6/15/2007 12:24:40 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.56

CTPH (ssdeep):
393216:ZxSfVbiyriQfrnCAtoqH026X9KJIn6/HvmHP3xLADVy9Brb1:ZMwCT7H0lN3n6/i5cGb1

Entry address:
0x3683

Entry point:
55, 89, E5, 57, 56, 53, 81, EC, 7C, 01, 00, 00, C7, 85, 7C, FE, FF, FF, 00, 00, 00, 00, C7, 85, 78, FE, FF, FF, 00, 00, 00, 00, E8, 68, 4C, 00, 00, 6A, 00, E8, C1, 4C, 00, 00, A3, 20, F9, 42, 00, 8D, 85, 94, FE, FF, FF, 6A, 00, 68, 60, 01, 00, 00, 50, 6A, 00, 68, D0, A2, 40, 00, E8, 72, 4B, 00, 00, BF, D1, A2, 40, 00, B3, 20, 68, 14, A3, 40, 00, 68, E0, F9, 42, 00, E8, 83, 26, 00, 00, E8, F7, 45, 00, 00, 50, 68, 00, 80, 43, 00, E8, 73, 26, 00, 00, 6A, 00, E8, F5, 43, 00, 00, BA, 00, 80, 43, 00, A3, D0, F9...
 
[+]

Code size:
29 KB (29,696 bytes)

The file xmoto-0.4.0-win32-setup.exe has been seen being distributed by the following URL.

Scan xmoto-0.4.0-win32-setup.exe - Powered by Reason Core Security