10143405_stp.exe

Microsoft Corporation

This is a setup program which is used to install the application.
Publisher:
Microsoft Corporation  (signed and verified)

Version:
12.0.4518.1014

MD5:
a1081ae90a52959379c4acc32cdf470a

SHA-1:
6489862e8aabc7c6b6c66b7ae6d26e9c3c53d937

SHA-256:
69f5d8e2b367c65a9af12d2ad0382fef871a8357aa2929499c2323954b0f99e9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
11/23/2024 10:08:58 AM UTC  (today)

File size:
25.8 MB (27,100,264 bytes)

Product version:
12.0.4518.1014

Copyright:
© 2006 Microsoft Corporation. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\10143405_stp.exe

Digital Signature
Authority:
Microsoft Corporation

Valid from:
4/4/2006 7:43:46 PM

Valid to:
10/4/2007 8:53:46 PM

Subject:
CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, OU=Copyright (c) 2000 Microsoft Corp., O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
61469ECB000400000065

File PE Metadata
Compilation timestamp:
10/26/2006 10:02:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
393216:57jNl2B/W9p+mzeJKDq7L0/DYnI5VkFDJ+ydHo2bnce/h5LGFT4O7DWVxFXCustW:tNlqmxetg/DYI5webEKDjutDh

Entry address:
0x56405

Entry point:
E8, 26, 48, 00, 00, E9, 16, FE, FF, FF, 51, C7, 01, 70, B9, 00, 30, E8, A9, 48, 00, 00, 59, C3, 56, 8B, F1, E8, EA, FF, FF, FF, F6, 44, 24, 08, 01, 74, 07, 56, E8, F6, 04, 00, 00, 59, 8B, C6, 5E, C2, 04, 00, 8B, 44, 24, 04, 83, C1, 09, 51, 83, C0, 09, 50, E8, EA, 48, 00, 00, F7, D8, 59, 1B, C0, 59, 40, C2, 04, 00, 8B, 44, 24, 04, A3, 74, 8A, 08, 30, C3, 55, 8D, AC, 24, 58, FD, FF, FF, 81, EC, 28, 03, 00, 00, A1, BC, 3F, 08, 30, 33, C5, 89, 85, A4, 02, 00, 00, 56, 89, 85, 88, 00, 00, 00, 89, 8D, 84, 00, 00...
 
[+]

Code size:
510.5 KB (522,752 bytes)

The file 10143405_stp.exe has been seen being distributed by the following 37 URLs.

temp:PowerPointViewer.exe

http://gsf-cf.softonic.com/648/986/.../file?SD_used=0&channel=WEB&fdh=no&id_file=29532&instance=softonic_fr&type=PROGRAM&Expires=1486006934&Signature=h0hiJpYbOneOk95USRS8HSdwScWJxzwl8y-bI1LEn3hZ-svsVVD8Ctqu-LZVkkc~HfbngGeaHOKJtBvhWe0U7jVDvjM7CAfWAKJAEyAhmqX9DeV4wJX1lV41BwH2MYs1jdMC2KIASNvusGrN5yadfmCoNi-ImbUVyZegxMj3UUo_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=PowerPointViewer.exe

http://gsf-cf.softonic.com/648/986/.../file?SD_used=0&channel=WEB&fdh=no&id_file=29532&instance=softonic_fr&type=PROGRAM&Expires=1487069465&Signature=bvo~CgaM8KYDW928MAhGefSg636mU6WyGXrdgFxRvhpbO4FYDg63Ki6BM2jjaikuISvNo1MIlz-~hUU7NOoVjpWzYvqfRrHdfeH4jvfhZS4gEBBGkABcX6kYswe3Ka1MZAL4Cq4OX4mZ9sxdA46y3ouWCFLeYm3BO4RyE-cLQSA_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=PowerPointViewer.exe

http://gsf-cf.softonic.com/648/986/.../file?SD_used=0&channel=WEB&fdh=no&id_file=29532&instance=softonic_fr&type=PROGRAM&Expires=1479431153&Signature=BRut5nJIrH6cLi9a6n3PjebGN3pqsJXUC3UR6EYVf1BnvFoGivusk-cwfT8jpt4exCxNWQDo4gGzuAyUmRf-ahVkD17ObDStZ3OxlwQpLc7ZT-I0DBvl7vzzOS3dKX4R0~TutgbskN1AoXkFoyY4fsGtS9SH53WMd1oxAN2T6NU_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=PowerPointViewer.exe

http://gsf-cf.softonic.com/648/986/.../file?SD_used=0&channel=WEB&fdh=no&id_file=29532&instance=softonic_fr&type=PROGRAM&Expires=1483666237&Signature=DiSQs2fLRTSdHSQEmWXztxeGZJe~P9o3ACu~Sj1S2RnF88iCW~GvVjIBozT~K09R9yknLVYN1FQyr7a30fsZcQF~88~jdpXa7Ji1MrY9an5nwb9cDvbVMyQHbZXN81aT3yfqKHdhBQgtyOg55sSXNHbWicVgEFJeyvJXAAKI-m0_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=PowerPointViewer.exe

http://www.jetelecharge.com/.../gop.php?id=567&c=QCZXlKaGJHY2lPaUFpU0ZNeU5UWWlMQ0owZVhBaU9pQWlTbGRVSW4wPS5leUpwSWpvZ0lqa3lMakV5T0M0ME1pNHhOQ0lzSW1VaU9pQWlNVFEzTmpJNU56UTNOQ0o5LmcvWmJPb3QxcFVFZ2VuWEZIRlVQRmZEeDFGdGJ2TG1sTEtGWHFwM1U3ZDQ9L5X

http://gsf-cf.softonic.com/648/986/.../file?SD_used=0&channel=WEB&fdh=no&id_file=29532&instance=softonic_fr&type=PROGRAM&Expires=1478161678&Signature=OwDtnx~ozTMFzaxjzeFaEI6sdjdmYe9H4laRg2Fq~l1coNBK87nzIGk2Fz51Erc-5Zg73huQ-QsgoC5vPU9qIuGoJBIsciEk1SpxNVAftpxckpgop6rsPt9g0mI9eqmaDqXRy-x-AZ6mAAyQ1YNBubE~YKajDwFIGAkSgC6jOmY_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=PowerPointViewer.exe

http://gsf-cf.softonic.com/648/986/.../file?SD_used=0&channel=WEB&fdh=no&id_file=29532&instance=softonic_fr&type=PROGRAM&Expires=1481062950&Signature=guBMKUW3Af8ULNQsmD-RTVeofhcBoZR8~pSLuEFXbOx-xfyD6u2w4XBOZZ8a5SJ4kdFFmuICChTCgxYdytXh0zP17PSJ3-IjM0TwtDXUKyhitfF6wBKGbLLXw-~n7QcJgI5lzMIYUWWCptg2WCa1SHLPvp0XmT~G4X0Eza0EHyw_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=PowerPointViewer.exe

http://gsf-cf.softonic.com/648/986/.../file?SD_used=0&channel=WEB&fdh=no&id_file=29532&instance=softonic_fr&type=PROGRAM&Expires=1478845373&Signature=CZ82txtixLqj21w55PUifBNWYq5J57vVBn80xA7GxgbIxbbd-EkyT4y3qMZaT8gJW6tfxhq68BwSGlf7fICN6RaHdEGI3Xn4tzFVzxmrG-woi9e7YRZ4yWFmJbJ9tCPH2hbEw9VkwPmWfFH8EtOPyWsDali4zuWBJAvhUyQgbJ0_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=PowerPointViewer.exe

http://www.commentcamarche.net/download/.../telecharger-34055344-powerpoint-viewer-2007

http://gsf-cf.softonic.com/648/986/.../file?SD_used=0&channel=WEB&fdh=no&id_file=29532&instance=softonic_fr&type=PROGRAM&Expires=1476074329&Signature=QwLa4QejbTFAT0f2OeSYM9Kb5GA1IyVyR-~uP12ANoqAzkkAKLERJwF2pm3u2g5rcdvbIXFdeoG5jQkW3l3mO2PbdNUJVc2jrNfJF6TH5ztxUhCJNoyPhM1M5WpA5tkGruypep6QJ4EkPNxcV3mljjxQAKfXDKKV5ifc6pJNMPU_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=PowerPointViewer.exe

http://gsf-cf.softonic.com/648/986/.../file?SD_used=0&channel=WEB&fdh=no&id_file=29532&instance=softonic_fr&type=PROGRAM&Expires=1478575147&Signature=L4URrTaFcwjLbGrNHhkIqjS-hM-JDh3OsdO7LHu4eB9fxxH6sXYqqPgtkZfQuSWXUiR15vokeafG~Lf8NNEY2YZIAYQ116yPAM7Tb5VTSD-iDJcCIC6Nhj1zAvguK3kuXgMwl3E5htHbvnQx3qbNd9mGp2EqHLnuFY1azKuNGr4_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=PowerPointViewer.exe

ftp://c8568737b68866bbad3aff43a53962aa:1352649506@ftpclubicb9a.clubic.com/.../visionneuse-powerpoint_visionneuse_powerpoint_2007_francais_10781.exe

http://static.llnw.cdn.m6.fr/s/download/soft/.../visionneuse-powerpoint_visionneuse_powerpoint_2007_francais_10781.exe

https://download.microsoft.com/download/A/5/D/.../PowerPointViewer.exe

Latest 30 of 37 download URLs