ccpclient_setup.exe

CyberCafePro Client

OneRoof, Inc.

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from ro.softpedia-secure-download.com and multiple other hosts.
Publisher:
CyberCafePro, Inc.   (signed by OneRoof, Inc. )

Product:
CyberCafePro Client

Description:
CyberCafePro Client Software

Version:
6.3.17

MD5:
af1ce087e37a61a6327d273c10a0cdc6

SHA-1:
8d841d2bfcc75f2c17f91b7a8b50fdd9e27bd7bd

SHA-256:
a8fd8b70798bb9389c01b1cae82573dd526901eb65924fc013432435379e2ed2

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/23/2024 5:55:06 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
BACKDOOR.Trojan
9.0.1.0151

Trend Micro House Call
TROJ_GEN.F47V0210
7.2.151

File size:
11.5 MB (12,007,928 bytes)

Product version:
6.3.17

Copyright:
OneRoof, Inc.

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\ccpclient_setup.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
1/6/2014 6:56:03 AM

Valid to:
1/3/2015 4:51:02 PM

Subject:
CN="OneRoof, Inc. ", O="OneRoof, Inc. ", L=Kensington, S=California, C=US

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2B321659548B75

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:kvPFb6vEjk2M5qiwR7r/ns4Z7gCZdZ5SRw/ZmcRW1Huift8dIm9o+fDmx1jc1:+db6MQ7wX7rU4JgG5sYZmcAHdAw+fD0k

Entry address:
0x9B24

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, A2, 95, FF, FF, E8, A9, A7, FF, FF, E8, D4, C9, FF, FF, E8, 1B, CA, FF, FF, E8, 0E, F3, FF, FF, E8, 75, F4, FF, FF, 33, C0, 55, 68, DB, A1, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, A4, A1, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 9B, FE, FF, FF, E8, 02, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 04, D0, FF, FF, 8B, 55, F0, B8, EC, CD, 40, 00, E8, 53, 96, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, EC, CD, 40, 00, B2, 01, B8...
 
[+]

Entropy:
7.9998

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file ccpclient_setup.exe has been seen being distributed by the following 24 URLs.

https://ro.softpedia-secure-download.com/dl/30402b56a700a8332bfd20ee05eefaed/58272543/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/2eff6d3605d1c64ea518dfc5e063ed9a/57e52166/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/0b6262d5c4f5f5c748e1f2b8a4af1e99/5837a1cd/100035223/software/.../CCPClient_Setup.exe

http://www.farmconecptguard.com/0Q_34xEx4AT 2iwk_BUHWU81Pr4QEXubIBvF4SxaMQjZgRzvULiF0yDnqhzvQzkUjSqHhm1gfGVo4PwIbaSEOWlGKZNeRm PS5e3PpaanVpMKp7w8n5Z9r9wVr4DH xuuFKjdFZBJxyi9GNAiwxuY1fzJ0b0abwz9CK2R8FPY6Vp3Qe1PoSzK9pu6cakhOL6F2L4pJjYZQ cR6_NU7IUaz6TbZtAvbQLqJC XDqhpJ4eywj6v0cPrLqmK438JYy PHKmD6TAgxnlqd6DDGjvtL149PYzkkY9mfBCEwz0jq5dtoaayYOwOfQ15ovvqJHqvppEBFEzkT7U4FlPDgIn2uCn8XsejirjirizAWJe JhEhuQRZHIDwjwhFDLeYjETJXx5GFkpjFO4lv4TNHsCgYW0WNkZjJEZgc5HtAzqlQHpwU4eLEWBMztZccOhF0yVcSgwAoSz-GxQAAKRdxtretCCEFCKK5DqwG4Nvu_EA-e

http://download.softpedia.ro/dl/6a3675c284150568becc43cefba29fb0/57c0d575/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/7c31c858c0496441df76df34e3f3b95f/580dcbaf/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/a454c2ca11980c495c0c9182374e5bb5/583df029/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/c412b2f94f710d84f27b093e50d5f377/57fd15a3/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/74986b3de5cdc3dea57cc79cb4a24f5f/57dd91d8/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/1a1df39a595777b646f5745b71731663/581902f5/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/5c845f8c12b990a52f84643dd0f39a30/57ffc868/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/69a359837507abe9defd30133fcec2bf/57e28379/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/ac4de4e1f3e61e6cf977ca02b359b5ed/57e091f0/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/efae56d1e1c40d924beea3a6eb6f454a/57ece6dd/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/ecd3d4fe0d773425bc808fa0696e5ec2/578fb644/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/e7e5035cfcf8f1bd1cd4427795059ce2/57c8b271/100035223/software/.../CCPClient_Setup.exe

http://download.softpedia.ro/dl/c5597f1b79d2b7c8fd864fa7b1d2a5eb/578a687e/100035223/software/.../CCPClient_Setup.exe

Scan ccpclient_setup.exe - Powered by Reason Core Security