firefox setup stub 35.0.1.exe

7-Zip

Mozilla Corporation

This is a setup and installation application. The file has been seen being downloaded from cdn.softsumafilesnow.com and multiple other hosts.
Publisher:
Igor Pavlov  (signed by Mozilla Corporation)

Product:
7-Zip

Description:
7z Setup SFX

Version:
4.42

MD5:
f31eb9ab454f88d68b0742e7890e8b93

SHA-1:
f1e1b733053240411d6b6194ff6b8b5f720ddfd0

SHA-256:
eabe6f2d7c049920a2dad5f207b34de19c0b037018c34fb92d582e92b69967cb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 5:59:10 AM UTC  (today)

File size:
237.6 KB (243,344 bytes)

Product version:
4.42

Copyright:
Copyright (c) 1999-2006 Igor Pavlov

Original file name:
7zS.sfx.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\firefox setup stub 35.0.1.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
9/17/2013 1:00:00 AM

Valid to:
9/21/2016 1:00:00 PM

Subject:
CN=Mozilla Corporation, O=Mozilla Corporation, L=Mountain View, S=CA, C=US

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0511EAF8579E2662BE622DE5AE0CD408

File PE Metadata
Compilation timestamp:
4/17/2014 6:29:40 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:Vvc6rBaDbBU0eudij1Dye03hMI4IJSTXbuk5toz7QWy+LOE:V6DbBU0eEi1Htvs+uCSck1

Entry address:
0x21E30

Entry point:
60, BE, 00, 80, 41, 00, 8D, BE, 00, 90, FE, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75...
 
[+]

Entropy:
7.8797

Packer / compiler:
UPX 2.90LZMA

Code size:
40 KB (40,960 bytes)

The file firefox setup stub 35.0.1.exe has been seen being distributed by the following 12 URLs.

http://cdn.softsumafilesnow.com/c?x=TCkkPyfAGJz fVISZj84byKjbu/.../8hm4Mx9CAVrnJHpYp4FR3xPeXvag==&downloadAs=FireFox_Setup.exe

http://www.toursbundlestock.com/DhnF0VrXHreI tUSIS1QQ6nna13dq39IRjZ99dlc BuTYij QjKtK6QwrsHmId5tOQXCqsWBgQ5KXysjoYJNuRZ uPts3E rtqxQ71gtqlzvgsD0fDXbckIuANQqsG_0 Zrv4pN7mFZVkhwaXZgX1WnXrK5Lu7AP147geMJx AZgvPxNMhtZY6AQg1kmE6df87Sn0tAh SkAkqBfvawEbalkk5dkwlGxCL1tKd EXR9HZBi63wHAuAYApWgi8lrl00qweI5DVqwlHLI1mGHgwLVEUhuRDkndKkJe ZWAjWX6G _qtUw84xjsQVeMAnZ 2uhlLvVRhpHgvXMCDCa z7ubOXHDSRDrLx2kwv77xWC5m LeabYppLoCHIPapX7yjx uRDCrDeJV3573hqEL6U9wvi05vz YkO9ZN3gAvMJYAs1i6QFGPbyeU41izCjJsJQZ9hAAM8rVyZ48r2QYHefvoMLxXwVWW0ru9zByNxhfv3NIv8FxEf90yyqR2twkRFXnZS_ctF7KMBGG9DbUhKseF2tZcsHD9s6FayVkKzlhqYe1OHJCoryJZOs4I_JY6DUbWGBJpBNKnp9i0uA5ezoqJI3TiM6KSqInxpQcivF5LKHB2mnWta_N87yJN0rju58oJkmpeMlumdYmjC7nDFK3apveUBwoS9WCjX_Ev1iyZ9Pkz5OTE USyR67mAw FuZJJlWxamX2SkSYFBqJFFl5oH7eLwqJBbvqaYwQjS KDZWTUQt1N3M9ojgzKdZswHtIelPqzOy3MqA8sqFv7lyGIZtTQQ==-Ow==-e

http://www.clearbyteshare.com/424WmyrahsXiynUKwDeVxSmVFUsrwVaKxrRFXC8BfSemwfZpnZAMYenh qBsh8P4dAgh7Sj4C6jAJOhLWGcn5LQcRmfo2G9hXGwNII7nKqrBpIlcHf75eNL5aWIWVqUn1K5w3Ll3dAuxApHs0WoKf7vErIdCaMrP2bP9HiKxaG7ebocx9TIJTWkjyplnF3uBU6UeEYxYrtpK v4nzhmJx_KODSiSXw==-Ow==

http://www.laboratorycleanbody.com/EhfQNCROcclh oA4_26oOyBooD9BYE98R_HUolt1l2KDGtMk2H XBi7FlxWzrOztVNIBYJatukGLJx462r9NY03Nk2 QjeFvCEtr7rHq6uwKA4E4WOapfCjqNB2ZbcRlAKmOw19ylz6d8blmxBRw3PHSVqebMc7HWYJyEO5VaK2m6OCu3H_c7QfwNM4mfeSx aTSs7IhD9r27HFeJDLC62JIDAlC9G7zIYX9LqTHIgMXP2kHcUlsHOhRbNjIpx_vV2SbrkM0vAV5IBxIaM6h6XsgYjd8jzkwnVuPUiz _lVio7iOdFmHEnwFnTJEVpsmXd2BpxoB6YlLUUtVdF0erBJkrH5Qn4dRO2XuTGNg0mbxDgFeztzwNwreAake6AeZX9Mrzbg0uxX0wNlpp7X7yn7vnx6ShM6tXlysyX4_IML_U1bfxmwCM370mNJ95CUzPVcEu186XoquMxuRoNrXrxwxOZyZX75f7VzIrhQW0hxHfV1o0BP6TSEUIPmlz38tvnyzla8p4LJW1ye8IF5_LO LXGiTzOeOaP_BnwHEWtfMn1ryV3r0QEhxZseoMokg8KmpRNT_wkfWQWP0rsrdBg97cz5hu_Wj u rWgc4A Yx7Uy92p39xVDh4 0SFsiSas4ysn56pWWNSbX3UsfNoZYAaaf5hSCv3lIQ5lG8aJTVNWMuuRXRcFiYco8qNeoIbzLrYxTOVFqXESBgYAHAxK4G87 58Yc8iua5alIkXDCRI 44cIPlf2F_0FlNE9LNRf0UT5SDtrn 6UV3TaXaIH295ubYpQ==-Ow==-e