crossfire_downloader.exe

Super Node Downloader

Reloaded Games, Inc.

Publisher:
Reloaded Technologies  (signed by Reloaded Games, Inc.)

Product:
Super Node Downloader

Version:
1.1.1.0

MD5:
250b9e9abe40098d647a771dc0d78e51

SHA-1:
bcec5f1019dc7d30aab123e5f615605a1604332a

SHA-256:
096570d4b7f5f3aeaae9d21592dff23e11bce23197749e61f6af3d5d1adff861

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 12:43:30 PM UTC  (today)

File size:
2.1 MB (2,156,048 bytes)

Product version:
1.1.1.0

Copyright:
Copyright (C) Reloaded Technologies 2014

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
DigiCert Inc

Valid from:
11/11/2013 6:00:00 PM

Valid to:
1/16/2015 6:00:00 AM

Subject:
CN="Reloaded Games, Inc.", O="Reloaded Games, Inc.", L=Irvine, S=California, C=US, PostalCode=92618, STREET=6440 Oak Canyon, STREET=Suite 200, SERIALNUMBER=C3427122, OID.1.3.6.1.4.1.311.60.2.1.2=California, OID.1.3.6.1.4.1.311.60.2.1.3=US, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
02F4290487329AA2B840F84F9E429253

File PE Metadata
Compilation timestamp:
5/2/2014 4:18:32 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:r/PS7Nj4Up4DHXZINZppKdtuKYzoTuvE4ekEzoHMigaBrXiieaJSLpdbfvz6yFzJ:jMZ404z2pKKolpvaJkpdbvzDFzJ

Entry address:
0xBB763

Entry point:
E8, E8, 01, 01, 00, E9, 00, 00, 00, 00, 6A, 14, 68, C8, E6, 58, 00, E8, 17, D2, 00, 00, E8, F3, 86, 00, 00, 0F, B7, F0, 6A, 02, E8, 7B, 01, 01, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, C7, CD, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Entropy:
6.3422

Code size:
1.2 MB (1,267,712 bytes)

The file crossfire_downloader.exe has been seen being distributed by the following 21 URLs.

http://www.bitstagcontent.com/07kI41zTCPeGnT nTVPiWS2vcolTfSHuImF_w55YXK62zBGXOqYDAQxrTv0kxE3vOp5YhBiQD_kS4Gxg5FS4tJsZRIoGeCvdB1HQ28shmAJrvpUpBLymcl u3cfM8K_hXHHahDz2aO4B7hJDWaGQTS9pJvd5m sH7FEFZK1qERGyUjhlqcBVDai86DQ2rWgJD8OQ34k2bXOr1OZoWTVv7c_jiqvCw==-GzIAAATqZDG9nyaWs6kUMJEDp5o_s8PG2JkKEcUbK0qZRmLnBVbu4HqW4AE=

http://www.filedropper.com/.../filedownload.php?id=crossfiredownloader

http://download-1.com/softwares/.../crossfire.exe

http://cross-fire.bg.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-flqiJpaSflpg=

http://crossfire-europe.software.informer.com/.../

http://www.downloadpresentcity.com/4PsvgU6b8MvO49yFHYgDkl2DeRVbt8YQHrbwFvXkLCs3Kra5u DcTVs 9gSBorNxhdkwyfts IKnleEUxQKzSJDNYe6vL4m gR27EaAHYNp0vgPqsZkMo1lOxBb1NAzgYsZM5qQTeA_FrXIiZjRgUA0ld23lVCxLJz wuiV0OaieG5yzkQWSDCdtSKCryAuwPNW2dk_q-GwEDAGR4t9GPAxfQcj pkgcti0SUwkQO2NtiiPkk9t448GSNkZ9FYG7pMeZ9cSZHv M9E7Prd kS7sNOQv0DQ3ojPS7qMiujgtgz4Tgv01y7q5d8EcEQeeE6NL7VqXetPCBgvVVwqyFDTs9SmZ_Gs4ByudCzbO1HVe7sIppHP5lYsiusuTFWDrUmpJkagdUlUkxfUfjx 7eFPV1cNp5mwShQaVGG1O7rm3HM9sjuGoVC0KT2Dtj3O5J7dkCtbZQqhmsReplASI oVHDbbUdgdJuSAkTmwW91ItwV MYCgUBzinQ5uW8nJtkK3LQ1FChNSQkNKNYyvzjuJJoBY 20UxR 0eHGUajvdr3th3h4bCJSJZ1GY76Bac5ifEoLDWSy1qsD10nuQRv38frcdYYgQLxkgnaCspfDweWHTLI821fOElUKwU4C49OSGfYggKwaHzQwlZnbdIclyUQnh22c6dpAHH Cvzw_ON2nmLFuMYFz7hOJWQ0NnZHA9sOn8gv1wXTm7JD2bPqD60Sdh47js 1JmLWJNdE7ugzw9osolG8HabQyx5DejhEkVuTAoHv1kubUqtc SrGk0k7RvDCxJlU2yBQZoGDTl 6gFSHhON8FUO4qL jN0oSShjVVggKgzy7aizS7w8w3v8cCUQnJEgIDEwXPI62WwU45Z4R7Q7jbbYzwND99xSrAzEb8n58SfDGM4SYY384QWU7HC5bU2 s677gYKzc5z0NRkgESClqoC6f7XrD8EfHkTYHV

http://eu.cf.cdnetworks.net/.../Crossfire_downloader.exe

Scan crossfire_downloader.exe - Powered by Reason Core Security