dolphin-3.5-x64.exe

7-Zip

Igor Pavlov

The application dolphin-3.5-x64.exe has been detected as a potentially unwanted program by 2 anti-malware scanners. The program is a setup application that uses the 7z Setup installer, however the file is not signed with an authenticode signature from a trusted source. Additionally, the file is typically installed by a number of programs including Project64 1.6 by Project64 and Dolphin by Dolphin Development Team. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
Igor Pavlov

Product:
7-Zip

Description:
7z SFX

Version:
9.20

MD5:
701b0088f5e0cd0611b4d87a4f2e13c0

SHA-1:
0755acd03cc6540bf938706e1e75bb63fb1c3bfd

SHA-256:
8c39e50d9a9b4f942fdf71050fff4c368a206ac15a061f41853f6be5d0eaa307

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
11/24/2024 2:36:08 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.InstallAssistant
16.11.29.9

ViRobot
Trojan.Win32.A.Clicker.5457448
2011.4.7.4223

File size:
5.2 MB (5,457,448 bytes)

Product version:
9.20

Copyright:
Copyright (c) 1999-2010 Igor Pavlov

Original file name:
7z.sfx.exe

File type:
Executable application (Win32 EXE)

Installer:
7z Setup

Language:
English (United States)

Common path:
C:\users\{user}\downloads\dolphin-3.5-x64.exe

File PE Metadata
Compilation timestamp:
11/18/2010 11:27:33 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:6G52OcV6iKoLalxmoxfBKTKtv8fNY0beiyoWnRyDs6a8r9dqzCzq:6GgOcV6JW6xmoxfBKTv/SinWRQs61r9I

Entry address:
0x1D262

Entry point:
55, 8B, EC, 6A, FF, 68, 20, 1E, 42, 00, 68, 5C, D2, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, 04, 11, 42, 00, 59, 83, 0D, 90, BD, 42, 00, FF, 83, 0D, 94, BD, 42, 00, FF, FF, 15, 00, 11, 42, 00, 8B, 0D, 70, 9D, 42, 00, 89, 08, FF, 15, FC, 10, 42, 00, 8B, 0D, 6C, 9D, 42, 00, 89, 08, A1, 64, 11, 42, 00, 8B, 00, A3, 8C, BD, 42, 00, E8, 1C, 01, 00, 00, 39, 1D, 20, 7A, 42, 00, 75, 0C, 68, EA, D3, 41, 00, FF, 15, 0C, 11...
 
[+]

Entropy:
7.9943  (probably packed)

Code size:
124.5 KB (127,488 bytes)

The file dolphin-3.5-x64.exe has been discovered within the following programs.

Dolphin  by Dolphin Development Team
Publisher's description - “Dolphin is an emulator for two recent Nintendo video game consoles: the GameCube and the Wii.”
dolphin-emu.org
About 3% of users remove it
Project64 1.6  by Project64
Publisher's description - “Project64 is a Nintendo 64 emulator for Windows by Zilmar, Jabo, Tooie and Witten. Project64 or PJ64 dates back to its first public release Project64 v1.0 in May 26th 2001. Project64 is an emulator designed to emulate a Nintendo64 video game system on a Microsoft Windows based PC.”
www.pj64.net
About 7% of users remove it
 
Powered by Should I Remove It?

The file dolphin-3.5-x64.exe has been seen being distributed by the following 22 URLs.

https://dw.uptodown.com/dwn/o9SqU_acwZtrIu7WAiA0iK8AfDsqLU7ybvCMZQIYO2wSafYOrFrKN9waprLJ2bq4kXM3Zax4lI9Gkeu61q3bt6OEjefFQ5Zb8_Fq3Wv9-JtjX1BSm9eGQsENyWEJxE6F/yxDWKI9WrvP0662vW8TqHyT215y6MlLqHoaw1I7qKJ7FCxOlEId3ui63bg7ZdYnx_BPgNVAu5297-_gSPg3O31BrtEb4jq1z0FFEs2S3TL441P2tuS6mWJ5K4PZUJgsn/HblpVk6cOABoM-WzvlzKsaSfwhrh88bWzBY32y8pLOKjGscW11BbwkhAdm886k2hIV_wl9x-rp-CcxUcSDbYXnryn4pNSTIkJEDmJa_qzAEtOiSOEEr5l8kHuBGVoDSU/.../

https://dw.uptodown.com/dwn/9sIqef8LP9sdVceH_3gfRcI96CsQbZ4X-Rgzb0H_IJZWd1Js0Ixij3uglvM-yOD-996UEzpYWsFHgZbibWOtHah6uEbi8vSZ2RUgQWUNQie4tnkjPJZNNzvkIIEjPn6e/jttKnQtp7InoS_JNZJh0wPFZSfMz4ZRoNSMv9L2qP6bE86TKekPILsdqgcy7KyiAbltUjcxkybhXZG-QxPvToJAmz_YMRPffgZzhDsbMvPArIJEzKE3SV-js5LIu7PZe/ast1JMm9l8X1Xx76oLGCUITuB7s3XPbw7HHvph9mbJ5aZzbRC_Jmw8-HKsalCBDfdzSziNomtSEswjOWGrzQXutsUKiZ15TJk2U0ZMuHTyhA_Y0N3_XtIDG7kk_eprCL/.../

https://www.emuparadise.me/emulators/.../dolphin-3.5-x64.exe

https://dw.uptodown.com/dwn/CAf23LBVpbgKmU2MiFMI8KbOAG5lgYEEn3l9wop3y7VvUmX3MKB1Dff2BbaqL35UmyyVxiWHDdM1yOVx_Tm-4cQuGE95o_yC97jecEatg1MccwYJASXcEDfeREcDeu2I/M2AjJfPDQt3eMQzvp0NTRac-zG_najCSfOGYfOICU_21-e4-4GWNxTTgNcgGNs47_yixchh11dS9g28it4aTNKbGtFqgEuspfEtqXJ5nlxcXcamb-F1FOYuHg09SrFTk/q2lOkPHHP4hL6Zh6JzWE2182GQ4uI4f-PYymgSVHyQPTBB5qjrSvr2lElbaSjVUfRiBQyGrfyuVih_SuDejHHKKChLRaIK4LsYfOnL5Iz7WgN6PbrR8AxRVZtegxXfDa/.../

http://securefilecloud.net/.../dolphin-emulator.exe

http://dc383.4shared.com/download/.../dolphin-35-x64.exe

http://199.101.98.242/media/emulators/.../dolphin-3.5-x64.exe

Remove dolphin-3.5-x64.exe - Powered by Reason Core Security