epicsetup.exe

Epic Update

Hidden Reflex

This is a self-extracting archive and installer. The file has been seen being downloaded from epic-browser.en.softonic.com and multiple other hosts.
Publisher:
Epic  (signed by Hidden Reflex)

Product:
Epic Update

Description:
Epic Update Setup

Version:
1.3.27.0

MD5:
9f1e709ba1bec637626844c18babc6c0

SHA-1:
2e87951f72eed8916a7fca0a02415e64e90b684d

SHA-256:
1f9da12063adbcd1ad40b067c5a5bb3cb33088240f7d4df158b57384bdf77695

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 5:28:29 AM UTC  (today)

File size:
1.7 MB (1,831,576 bytes)

Product version:
1.3.27.0

Copyright:
Copyright 2007-2010 Google Inc.

Original file name:
EpicUpdateSetup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\epicsetup.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
8/21/2013 9:00:00 PM

Valid to:
8/22/2014 8:59:59 PM

Subject:
CN=Hidden Reflex, O=Hidden Reflex, STREET=5744 Yewing Way, L=Gainesville, S=VA, PostalCode=20155, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00A0B0D9AAAE8562F0CE35F0CA297D2005

File PE Metadata
Compilation timestamp:
9/4/2013 2:53:57 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:aaEWspYFn7h5amphCXb+MbQWNtJc+wOPJ:dEon7h4mnAbZMgJpjP

Entry address:
0x1000

Entry point:
8B, FF, 55, 8B, EC, E8, 36, 03, 00, 00, E8, 11, 00, 00, 00, 5D, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 6A, FE, 68, C0, 25, 46, 00, 68, D0, 70, 40, 00, 64, A1, 00, 00, 00, 00, 50, 83, C4, 94, 53, 56, 57, A1, 78, 40, 46, 00, 31, 45, F8, 33, C5, 50, 8D, 45, F0, 64, A3, 00, 00, 00, 00, 89, 65, E8, C7, 45, 90, 00, 00, 00, 00, C7, 45, FC, 00, 00, 00, 00, 8D, 45, A0, 50, FF, 15, 84, 31, 45, 00, C7, 45, FC, FE, FF, FF, FF, EB, 26, B8, 01, 00, 00, 00, C3, 8B, 65, E8, C7...
 
[+]

Code size:
325.5 KB (333,312 bytes)

The file epicsetup.exe has been seen being distributed by the following 7 URLs.

http://epic-browser.en.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAOEBC9tj/6CuCr/gR8Bps11bkccZ/R7H9fU7qSVeF1KYSbPfIW48j3Vp60bRbMArUVO1r5AT8pZdYbiI9PKcT/.../rV9SzqAgmLTzZenPGzlFzsIATLtBdFeAXUJzm50CcwZeCgMxfRwCyexa oEGpvwCWZcC53sPJdILQXCiRw7t9 b

http://gsf-cf.softonic.com/2e8/795/.../file?SD_used=0&channel=WEB&fdh=no&id_file=113063&instance=softonic_en&type=PROGRAM&Expires=1422538700&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=Wnsr7XLfGTOVTgWPG2DvsyZGeskicr0XqRp7SwLVrN17d~U3ZqqiZ-DogTn0fUR0h0i8JbwgJY-~A8GA~NcQMzloF6gdassYCkh8wJAW387W0VzIujF4H9cLpcez3t4MNodpPEYv3cD4n-tPaMronMCHNN4FqQhwnVqQq8bCfWo_&filename=EpicSetup.exe

Scan epicsetup.exe - Powered by Reason Core Security