badoo.desktop.installer-1.6.58.exe

Badoo Desktop

BADOO SOFTWARE LTD

This is a setup and installation application. The file has been seen being downloaded from filehippo.com and multiple other hosts.
Publisher:
Badoo  (signed by BADOO SOFTWARE LTD)

Product:
Badoo Desktop

Description:
Badoo Desktop Installer

Version:
1.6.58.1220

MD5:
182bb2e441d2486f5935f53d3d4ce94c

SHA-1:
7d46bb4f3104f07ca8480fad8c0038ed8292f26b

SHA-256:
717f658414ece1d19470d8eaf575238649edd82ed1e0ce1be5f218dbc19c644e

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/27/2024 8:51:49 PM UTC  (today)

Scan engine
Detection
Engine version

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
3.12.26.3

File size:
3.1 MB (3,225,360 bytes)

Product version:
1.6.58.1220

Copyright:
Copyright (C) 2010-2011 Badoo

Trademarks:
Badoo is a registered trademark of Badoo Services Limited

Original file name:
Badoo.Desktop.Installer.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\badoo.desktop.installer-1.6.58.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
5/16/2014 2:00:00 AM

Valid to:
3/30/2015 1:59:59 AM

Subject:
CN=BADOO SOFTWARE LTD, O=BADOO SOFTWARE LTD, L=Larnaca, S=Cyprus, C=CY

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
6E8FFCC61A75B6FA28EFBAFFCA23FF98

File PE Metadata
Compilation timestamp:
6/20/2014 12:00:12 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:OYJSCWOYWGGJrVk0D17/Y2H3MuEp1jLtQyJWNU1MoulpneROyodHRJY3yWADY:OLMrBDlAKcXLxWNU1Nsnohg7jY

Entry address:
0x79CA0

Entry point:
E8, 8F, 8C, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 08, 5B, 4A, 00, 89, 0D, 04, 5B, 4A, 00, 89, 15, 00, 5B, 4A, 00, 89, 1D, FC, 5A, 4A, 00, 89, 35, F8, 5A, 4A, 00, 89, 3D, F4, 5A, 4A, 00, 66, 8C, 15, 20, 5B, 4A, 00, 66, 8C, 0D, 14, 5B, 4A, 00, 66, 8C, 1D, F0, 5A, 4A, 00, 66, 8C, 05, EC, 5A, 4A, 00, 66, 8C, 25, E8, 5A, 4A, 00, 66, 8C, 2D, E4, 5A, 4A, 00, 9C, 8F, 05, 18, 5B, 4A, 00, 8B, 45, 00, A3, 0C, 5B, 4A, 00, 8B, 45, 04, A3, 10, 5B, 4A, 00, 8D, 45, 08, A3, 1C, 5B, 4A...
 
[+]

Code size:
577 KB (590,848 bytes)

The file badoo.desktop.installer-1.6.58.exe has been seen being distributed by the following 24 URLs.

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

https://docs.google.com/uc?authuser=0&id=0B2EdWDUWv0muRmd4NmU1T1kzd2c&export=download

http://filehippo.com/download/file/.../

http://dl2.filehippo.com/.../badoo.desktop.installer-1.6.58.exe

http://filehippo.com/download/file/.../

http://dl.filehorse.com/win/messaging-and-chat/.../Badoo-for-Windows-1.6.58.1220.0.exe

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

temp:badoo.desktop.installer-1.6.58-1.exe

Scan badoo.desktop.installer-1.6.58.exe - Powered by Reason Core Security