clipgrab-3.5.6.exe

ClipGrab

Philipp Schmieder

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
Philipp Schmieder Medien   (signed by Philipp Schmieder)

Product:
ClipGrab

Description:
ClipGrab Setup

Version:
3.5.6

MD5:
51b8cb940a3533b6d486494861670f74

SHA-1:
61c6d763b6ebaad0c71685f497e629cb6784b594

SHA-256:
f03692d51272ca0808705d713208319ebc4fa1cd68f7886c99011900d2cd3265

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 4:07:05 PM UTC  (today)

File size:
21.2 MB (22,231,840 bytes)

Product version:
3.5.6

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\clipgrab-3.5.6.exe

Digital Signature
Authority:
StartCom Ltd.

Valid from:
11/2/2015 8:25:58 PM

Valid to:
11/2/2017 10:11:31 PM

Subject:
E=kontakt@vanbittern.com, CN=Philipp Schmieder, L=Seybothenreuth, S=Bayern, C=DE

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
137FA50AF3678E

File PE Metadata
Compilation timestamp:
3/17/2011 5:22:54 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
393216:cBCHX8Nj7N7JKjYbDpYIpjK8SJ0sYDpq1z6nGsrUFy5fI42yPbFw8wyKgJANoZgQ:cgHQ+UvpBwJ0sGodM4y5fsKBjJAKZgJG

Entry address:
0x16478

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, B0, 52, 41, 00, E8, AC, 03, FF, FF, 33, C0, 55, 68, 45, 6B, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 01, 6B, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, AB, 41, 00, E8, 4E, EC, FF, FF, E8, F5, E7, FF, FF, 8D, 55, EC, 33, C0, E8, 7F, 84, FF, FF, 8B, 55, EC, B8, AC, D6, 41, 00, E8, E2, E9, FE, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, AC, D6, 41, 00, B2, 01...
 
[+]

Entropy:
7.9995

Developed / compiled with:
Microsoft Visual C++

Code size:
84 KB (86,016 bytes)

The file clipgrab-3.5.6.exe has been seen being distributed by the following 14 URLs.

https://dw.uptodown.com/dwn/-RtkLE3SbbeXe7Wh5Zdih987aHm45dq8hZu02vRG2bL033dVy8AJY3_THYWZCbmlZKofcgICCg1DQ7l3Pvf42boQdjcqH88UgRSYRLDkT0hc-_VVkLaVbogs7Xpp676K/eipJoVzZTbqLKVRDnmPe1-FQkZHp0n0uZssqHMN0S5RHa-5zOk0C6bUIaORRtXvqRQ5149Hg2wFnXeZKKpT2okYOFU5S6RGAZ4tnAS6eT1o6Mhrc4-418bPGaOiNtP_T/UnLfPMRJ16OzxBpOIBaonQgUF5yV_KdaYK2YV0RzEHWpWVEnkspUr-NSER7uFCBBXBN8ipeLY9U0ypgIwJM4FJGQ-ZpUqgxMTcXrDHoJGmBYcjYCQZvlHwZimKEdEWp8/.../

http://dw.uptodown.com/dwn/_f5PHtBhI9bFa0b2LzJWBrAFcDgKruakgEWzs7qgi-v0bzNS4W_lPWI_KWUG_H58zM33AT8CfSFtm7YHSHea4bpnKCELZ6y1XoHNbnlOmiFlXhgChJsWeW2ZunW3sKyJ/I3vQG2ciWT5mKKO3MQg-w3mLxS88DBPMxsbhOPG2kpbi2zyB3E02hCGGjtIVTMPZsALWQ0lM2Om8Tax-imaHRTFVwFi3tVp3VAHp4LKoWIG6Dk0Un25YdFshZPSfu_OV/Zmvsmx1XyxZ48_wBPO1xpeOgRkV_zxtiLZqRii31EF53mzGXC3b0Y08LqmhjsoZNFb_eshs_z1b1TrQo8U2J0i15HO0YLnwdU8wFqEeeX950_sybrCxcpbt3k750UJnI/.../

https://dw.uptodown.com/dwn/QLy7Mie9Lo3FeKcEfWsswIRnJSOjMlJVCuStk8aGpL3zZQjjLFZZe99rNr3x35dja2mrgRTnHY7rGV_wIi4wThpQgVxc4RRPuZ362tO4QIrAcOCxrAJJ7UjYL5eNFRXc/lRMYXoTikjFlu4V3ZD3OMLevbwGXlbSIga_Zkd_BiChiSbC95J_9ZvJYwk-LZWPvJgzMywiioU2BGBnp_YNjoHySdVs9iCPv563WLzsoLG8brQtuoYiqDcjuRrkyu8HA/YfJbt_j4yo8TAvOAD2kIlQNnrfq0SaYhL9pU6eAIIJTDkQIgrZA8KsgTVpaJkdR-dV9l_-hlYxJ3Eqt9et0zT0J8Jp4pp8xh242-jH81z6U-FcJ3274DCZn9k55o8vTf/.../

https://dw.uptodown.com/dwn/3PrVt6xvMHFiCJoARs0BG9qi6AeEutdsfYwLI3jqo2jmBVtmnsj3wJ_odMKDwMt5pvs_MJLKChB8ja_kglJ2x1-baQL8UqOSYN74-LOMw3k7VPw594Rgo9GJfDUGzrzX/RbzNErKvPXZvNz-01YiKiiVR8KMy1Gnt5f98oIqykLgjWEgCEDp-hKOJe7EhmS56ssyBGRbDBYh_phF-kynroEynnoF-fE2EDtu6v3AtnrGEpfyi9tCASoCHfizfn5ca/3xdVwyZrQ1NMDByqRH4mD7--3EToLhnWhzHIBxhX9ukCHPNmhtndIUzg8aXnM5LgJVSQWGsUTJlRNT4n6AtcmAdZH0gLrpAbw6VsrvIc6HR-dDVdpvYpbwPLLMKLdmpm/.../

http://dw.uptodown.com/dwn/jP8VxnOD5HKYAdsEfyDsqE1XLD1KgG1aOLeVDM73DhZLprdrEn_h6GGul1O9S6AuJTRhD5IGnZlBAFxYSS5thIJQkfSlgwdb9lc-h0LCB-cJPgvz0DDTSso5KieOaQYC/AjXIelNtONBmopFIffu_2NwXsxxBW8zEBI5vPLjn8jmd9RJtJIh301BjpjVQkbsMKQN8kAXgb2bKPQ-MRb7JxgsMvE0WfMxU1wc7hjmEzeB1CBkkOFKjUA6Owti_qCIg/nHDpi4FWjyIC38pgPr3T1WS8hDuBr6V3xsDIhYfJf5k6Hgj9ZgbrR1subdsp4CaOdeqBffVufVNknDh8SJoQKHIge5SbUJHund9chZrQshXirCOe_S-WP9JL6fUqRnA_/.../

https://dw.uptodown.com/dwn/m_Tta4pF8bYOOe7cf8s2EckerqzXFm2DMsupF3E7K2CKIB7A3d2k1axrfxW73VGZlmxbLHq_wR0Hv316SmJKKr4c5-TF4_QSYu64B64RRY2frfHg3AmLhsf7k6lKJdql/MMrZG_MZG6izvbqkr918Wqeu4oZ8f1oiaF5p9bKdLowV2d-ebZukCzFmJO90QpITdeWD_4e6iToo_SC1l3b3kmhF6Ax7SEzhqg9QnE2chNCFJ-g43jfZ57e-IW5FxtfX/JLA0ed8abmbW8cm7D6Ov5rCKdp6CSDjJ2FRY0JMdVde5kfexGNTu8T5oYqXjH02NdeG2zvU1mX2rit5jFUzzJsm1mBWKN1tOKYyVCRUwjT1AvQGbBjHRmUQi3iIxgA3A/.../

http://dw.uptodown.com/dwn/3PWCDhJ71HAif5F1eRO5fADNjp2Skxv80owfiq4hKI-tMYXmpP6nYMjfBBwzwRq-LkI58QeQBnSmwzYOcGrbP9eYghumSQFj65B9rOmu1bt_FPQplpIgnIyV1txiiJFd/HBRIkjeN1XM2Nr4GYcporkm1CoaSuezVqYhkdfou75P9knG-pQ7UeZWWKTKAxr04ZpN5UsuUi6gJc7btl95vb7N7eKmb4O6AbJXjLqeztMIeMiSLmKAGFIR1MqYox7m_/1AUb6xIkD_Sx5x3FX5aHhfo1fJj-fLN-M9hwelRPeF932N2XkxFLOz8H8K2nxjdnh-AuDtv9RntNcjX3ZtfbXJJ4d_l5dMD70RqPcoWnYqrGKffC68pzehT3cfjVXalY/.../

https://dw.uptodown.com/dwn/hA0GhTk3xOBwtWtAqG5_ntN-cekCm-4iCpZvnbvmclM36WcdFst_n_aBSshYj_7Oqpd8KqN9UZ-FwAhUjhCl2whZElS5afG9tw7qd0NQBQR2qcwVeNCCxGUTuVeRtD1u/p68KIGYtQrOn3aCp5k3EsyfENienHmLs-k-LJ01opb8b2Ha3JO2HSqrWRal3jUBFCM2sY-HxqsQuS95v4Yys-e1Ig9sft4CvcpVsQFNiRmvx1SfUKjK_qAYgbjsIQ_Aa/__gNTkwOs5-7tnF9cz7oVVb3hLls2g5eeO_N12b4Rv8efL7EWPEh2BhOZM3-Zsmf9EXrmE5I-6Apsn98Ahh5SJAsOlGwdI8Pwt1fDqLn96E4qTfdEdrfW61WDOnQEO4-/.../

http://dw.uptodown.com/dwn/J8_t7wkGBh1dLHyy0TmtKLcfFrIMnQmFvnspYdG07Rocqm3nt2QH5Wf_HqsCDONkvKHAFUudPTlWAQ2ItLfTXizwQSasEVzvTfhxXCvl4FbH2gbVsfDkjZq8c8yJ6FLI/CxjrV71OEXzLQjwF27w3BInED82oF89rDMONH0f2jN7DUsbgwjMFXNxyNcnPIChC4Ql-oxxNPXrPbtOYcSXKX8D-iZ4DLZlBcAKEkWoDABo6_MHuhnEZpNldqukr_0YZ/.../

Scan clipgrab-3.5.6.exe - Powered by Reason Core Security