connectifydispatchinstaller.exe

Connectify

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
Connectify  (signed and verified)

MD5:
bcd84af9f2d35d30f569ce9e954a36b7

SHA-1:
dba324e97472c8917b4e948ef3ea7f516d94e711

SHA-256:
8fec5e3982fea7f79d1da601e479e1da1de8ac771cab6e91918fbb2b7be276ca

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 11:43:55 AM UTC  (today)

File size:
6.5 MB (6,790,200 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
7/18/2012 2:00:00 AM

Valid to:
8/1/2013 1:59:59 AM

Subject:
CN=Connectify, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Connectify, L=Philadelphia, S=Pennsylvania, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0855405505DD76BBBC1941783142B1DC

File PE Metadata
Compilation timestamp:
12/5/2009 11:53:18 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:jowlAn7M7kbiamKHCPxLt9QKM9qghRZW602p:joXe0CPhAV9TRZWB2p

Entry address:
0x36A0

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 88, A7, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 80, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 80, 40, 00, 53, FF, 15, 88, 82, 40, 00, 6A, 08, A3, B8, 63, 42, 00, E8, EE, 2E, 00, 00, A3, 04, 63, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, B0, 0C, 42, 00, FF, 15, 58, 81, 40, 00, 68, 10, A8, 40, 00, 68, 00, 5B, 42, 00, E8, F4, 29, 00, 00, FF, 15, B0, 80, 40, 00, BF, 00, C0, 42, 00, 50, 57, E8, E2, 29, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
24.5 KB (25,088 bytes)

The file connectifydispatchinstaller.exe has been seen being distributed by the following 21 URLs.

https://dw.uptodown.com/dwn/1Q7tcqgTJihHESuslZymuvdcZvTxD3evUmdI8yFwOs-UcFaDs_cSk0go9FR4M7c6OiDXNetwgUY2fEvxhFy25ChlaTXBKXftKs1rya_kmLeg3VLwolE-JytGR08LZh69/T9h_jvNnaX9Ddgi2U3iGQaa17lwREQSRL6Iop4gw4rGh_MDs6sqecOmI-OerB2bE0ByFjXhGJ6Upgk67tl1puTVVG9hpFJu8KYHeTOLaHFTz1r2bzdGSYUYTvXDPAZmF/4D1cDvOwkKTfWvLP5tL_HTVqiB1Xl462Q5DRej4KK3HqKlDgNJqw-J7O_fr2ry48l2k1_4a66-ubV_ssFmDEem415cEzLKt-YVo6fiO1GqhVzTVuXzDRp82ctOInXIa4/.../

https://dw.uptodown.com/dwn/S3SY6C6g0USMau-e_UpDkGP1n1aH5FqeTzQE1orsVWeo8DtCvUqF8NCHmdP4BZIPDsVL9KSrYsoK87fCWfZ0w_9gC-dGwq-Yyj04VnFMYaPLjEs9ZZWzNqZKEHmRDziM/a2XyBMzaxJHYQeQ4HnPXuasIk69XhcaV3SL-VMpS87wg8vSDrk5spE2JJwzpnc09KWalVDanCslKDviNq-0DI_JcYAEhv3Chb0bK9YZyDmvv-EcKIBtnjZfbyA3YZet3/wB5XqV3qWZd3SY9vqvML9tK6onWLtMZXRZ_qUXV6l2It2boaSKIpK_M6e082TobG225jwuMW6-jdNU3Kw28txhfZ52Jlg1MTrYT9k5lzx6nka8ArZ7QqdpvDrALiyzqY/.../

https://dw.uptodown.com/dwn/EYu_1issvV-O-9oKZWt4XMuVFuMVZDrLpV19SYygsat6f0yzUmFqXdQ_qrLdUx70x2fl9Ce8dyJ99Kx2r-vC8BRjrPYvQyM71zXsUcXHVscMlt41V14XPwX_sgxlzKb3/nsXMOI0j6E9Eoz1UCaK8_utZ-AGz2qYrB9pDajAlTnW1qA9QspoP_3OfApwFBzdmHimtIZNzrobYEmsWFApSSNZIGrRTrdIDq57v7GGcVfqmZN4ZxQvPimkyKuaF32qc/JFsiBgi_KKKyf4P7ZEHDNrOmEatLy7s9QwDY1CwGL0P4cfUSVdjCsNFLXwXXp5Z2nN_Fhiraa-EL3fW0E6G5te-6h1nb6RrXSFlX-0HNkMz4b0YhQEvWX8Bmi4rf4aj0/.../

http://download1472.mediafire.com/44e9fc1c17vg/.../ConnectifyInstaller.exe

Scan connectifydispatchinstaller.exe - Powered by Reason Core Security