diablo-iii-8370-dede-installer-downloader.exe

Blizzard Downloader

Blizzard Entertainment, Inc.

This is a setup program which is used to install the application. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
Blizzard Entertainment  (signed by Blizzard Entertainment, Inc.)

Product:
Blizzard Downloader

Version:
3, 0, 0, 1668

MD5:
d5bb4853a7148fb5b7c0fcfc13172b56

SHA-1:
b5e29170fe035a4214b41552fe7759d2ee547aba

SHA-256:
dae7d365835782a6baeb4750cc7c8ab3b398fa5b6f53f98c442ee08cd91d3917

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 8:18:52 PM UTC  (today)

File size:
7 MB (7,341,464 bytes)

Product version:
3, 0, 0, 1668

Copyright:
(c) 2004-2011 Blizzard Entertainment

Original file name:
BlizzardDownloader.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\diablo-iii-8370-dede-installer-downloader.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
9/30/2011 2:00:00 AM

Valid to:
12/5/2013 12:59:59 AM

Subject:
CN="Blizzard Entertainment, Inc.", OU=TECHNICAL SUPPORT, O="Blizzard Entertainment, Inc.", L=Irvine, S=California, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7DF5743025E2C2202A6BBD0AF8E570FC

File PE Metadata
Compilation timestamp:
3/14/2012 3:03:03 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:kKTHdJYVuy3qKEAr+F97LjjZTeQ1ASZOcq3ATM60yOeODgNcW6wBkoDCF53jtc2K:kK3YqjAqHH1ADmpNcWrvCHjZAyYkgVRt

Entry address:
0x209183

Entry point:
E8, 1C, D4, 00, 00, E9, 89, FE, FF, FF, 3B, 0D, 58, 79, 81, 00, 75, 02, F3, C3, E9, A3, D4, 00, 00, 8B, FF, 55, 8B, EC, 83, EC, 20, 83, 65, E0, 00, 57, 6A, 07, 33, C0, 59, 8D, 7D, E4, F3, AB, 39, 45, 10, 75, 15, E8, 0D, 0C, 00, 00, C7, 00, 16, 00, 00, 00, E8, AF, 84, 00, 00, 83, C8, FF, EB, 78, 8B, 4D, 0C, 56, 8B, 75, 08, 85, C9, 74, 19, 85, F6, 75, 15, E8, E9, 0B, 00, 00, C7, 00, 16, 00, 00, 00, E8, 8B, 84, 00, 00, 83, C8, FF, EB, 53, B8, FF, FF, FF, 7F, 89, 45, E4, 3B, C8, 77, 03, 89, 4D, E4, FF, 75, 18...
 
[+]

Code size:
3.1 MB (3,237,376 bytes)

The file diablo-iii-8370-dede-installer-downloader.exe has been seen being distributed by the following 7 URLs.

http://gsf-cf.softonic.com/b5e/291/.../file?SD_used=0&channel=WEB&fdh=no&id_file=333446&instance=softonic_de&type=PROGRAM&Expires=1453077549&Signature=QvGxp-M39CfNpedhCBJb6yovwCkxEQfOTNKBcPf89yhxm14DHHEyQiwiGpyxqLd9-BDfjQjXoI4eCFZDUOWXcbBFapE0aKa7SVxzZxwh7Cxf2X-~-FLKTlqH7SaiKifOVEEJGzfsoDpdEn5JRsdoj9T~qBoBYBfV4~Z44dhGKvc_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=Diablo-III-8370-deDE-Installer-downloader.exe

https://diablo-iii.de.softonic.com/download-tracker?th=1/.../YN Bdyt2TfgoaBH832o33JXO2iIBRUdMZ sZEZ6rRNVWJs1ukMaiisIZnBKDBJJk1NM3Nb6YuoMHwJlmBDBoZG640o7ZNi7iQroaUaobkd9bbBTzbgwyb5jVGId7eXoXr 2h1XMV5ScUTjh7FuWs2k1UKGUjLQB3Va5HlBhZ1rvdgtGsqtdjH0=

Scan diablo-iii-8370-dede-installer-downloader.exe - Powered by Reason Core Security