fsresizersetup31.exe

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
MD5:
07e0679e14c2733e2ca9a923531e5563

SHA-1:
e8922cb3f27e31b688c207596dc4594fcfa2b2d6

SHA-256:
26ed9f4650f02b3f7c57ab1c14a4efc107b80ca5b1dd4ae8de07a07c68776e5b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 1:09:35 PM UTC  (today)

File size:
1.4 MB (1,491,490 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\users\{user}\downloads\fsresizersetup31.exe

File PE Metadata
Compilation timestamp:
6/7/2009 5:41:54 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:qTBai1YbDptVh86eKWNwCrhWLduuKoRSrT2YIFPue5S4wLeiffckX3z+0FXd6SDi:IB8UPKWOCELdbErTad5S4RiHzXDRdzhQ

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.9957

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file fsresizersetup31.exe has been discovered within the following programs.

360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
FastStone Photo Resizer 3.1  by FastStone Soft
Publisher's description - “FastStone Photo Resizer is an image converter and renaming tool that intends to enable users to convert, rename, resize, crop, rotate, change color depth, add text and watermarks to images in a quick and easy batch mode. Drag and Drop mouse operation is well supported.”
www.faststone.org/FSResizerDetail.htm
About 2% of users remove it
 
Powered by Should I Remove It?

The file fsresizersetup31.exe has been seen being distributed by the following 35 URLs.

http://gsf-cf.softonic.com/e89/22c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=36892&instance=softonic_es&type=PROGRAM&Expires=1477565745&Signature=B1xk0B1ZfJXNKjjpHZy0DkHwgLYuI8CNCSKDn~aPbGiWci~MV7aBfR-A0s-sOoQ9VUwxEywY31I0nMibIqkHrbjw19NR1ctop9ZomugyRGjwWLgYTNWwGQN0IaK0TbHM6M46ievxLPSeel6n0B3AXnsARvKsop1gpw4Rv4aw1Ss_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=FSResizerSetup31.exe

http://gsf-cf.softonic.com/e89/22c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=36892&instance=softonic_es&type=PROGRAM&Expires=1475554941&Signature=RzDOk-DiEllYy8li-Rbcc7vqIEY5wl8ECOQcnJzRIbId8AKnNfasRBZ8CO2a91xdDUx0CsoC7TLzdeqvyOp38BJd1UF0kbNXAdFmM~-~b9QboYZvIrY8XIWg7TyK~wSXo0gA180dvoxzZye06sQ3a1CjE4Ub7O4L0Px60EmwVc4_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=FSResizerSetup31.exe

http://gsf-cf.softonic.com/e89/22c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=36892&instance=softonic_es&type=PROGRAM&Expires=1463901120&Signature=HVNjj5-Ldr5ubfXZIO6cDQ0LwSqbKIN5QKqqNoSKm2hgyKU99AhgGxDSiYP-y4DXf4Wt7~5Aq4wRQDMBQSAm~rauCVSefwn-Qs6-a7aDddHEY9cjjYvbeT4Z46eOjSSeQMFb3k0bjn-OBEi7AunbVGfJd9UCAMYZCiPW1Zlg19E_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=FSResizerSetup31.exe

http://gsf-cf.softonic.com/e89/22c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=36892&instance=softonic_br&type=PROGRAM&Expires=1446998451&Signature=DMS2nGY0550RHwaxNd-itBnmGT6ZiFubhHdO0jSdlIMJn9P7RyvAv7XEpGyqqlmfXVwq21i7kjDt1DXilLW-K53do2kb4Db5hld5DQOJX47K-IQ~qUxANjqIlES-3qO5t7cZz7NfMZLS5xed6ZQd1v2G3hRjkaj5CP71JxBCApw_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=FSResizerSetup31.exe

http://gsf-cf.softonic.com/e89/22c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=36892&instance=softonic_br&type=PROGRAM&Expires=1481699418&Signature=MuA93C3abC9B2ZdpkmZYQaGZO9JGf4YKS9ggYGEDtjygLhVpsY4b84JV~ZZoDIT46pulmeP~Qi6O~O6vMy57sqj5P~~lr445rKGrRUAA1BjNLD7scn0wxXl5Gzy1yQv96xdZ-QkfByoSG7r5fI6iZl-0HtSWHlzI-GoEtfhbsx8_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=FSResizerSetup31.exe

https://doc-10-a8-docs.googleusercontent.com/docs/securesc/a9ekmu44ujmkftgubd9h2husn29usi2k/9gtm9jfm3rlmmll5oao99shqpd1u6417/1478196000000/15031944625624314416/.../0B4QytAM0Z_ZwTGt5aDRmUjN4dE0?e=download

http://gsf-cf.softonic.com/e89/22c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=36892&instance=softonic_es&type=PROGRAM&Expires=1476170387&Signature=ciNLtRTDhXx6xhD5DZheMx~f5GSOKG28I6d6gPQuf9haNDgtGlZi-rCd7cAm6umNJTeSjZj2xSCXPRHVFcpsfSBygIw69-hbG2aErqnnTKEwSVRdeZYIkUlScM2~bHseBcCF0jZVu9WI4CKwsFLd0o3pfInrmCIfa3p7MwEXvq8_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=FSResizerSetup31.exe

http://gsf-cf.softonic.com/e89/22c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=36892&instance=softonic_es&type=PROGRAM&Expires=1462258242&Signature=YSofMHfkTF7HBgcRdIYYucGf-QBMQnY3cEKaCo4z1mQD9uO9LpNoXAu6DORHs9u0-ga5pIUtpc5wgQjyu3mGHt6m04pnul1oYqfDYIFiLmBKr6WBaatFYFnMaum-4x2t9SdknKaSe9WZdIwfVFM8SQvz6isppFoI~D4tzHt9PRg_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=FSResizerSetup31.exe

https://docs.google.com/uc?id=0B4QytAM0Z_ZwTGt5aDRmUjN4dE0&export=download

http://downloads.zoznam.sk/.../faststone-photo-resizer-49?did=11395

http://gsf-cf.softonic.com/e89/22c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=36892&instance=softonic_br&type=PROGRAM&Expires=1441244032&Signature=UgFWpGnL~lh-EnosSOT~A9PudiU7naxXNYrgJ47S5sNfLW5IwMGHmdXJKyImtWkwLDQKSHm381NhzZNF6yvBNXn6T1fFbDSUEgPK3j5amQZa91wq4bPs4r7ZIZlb6wLpkPQ8fjdJYAbwf8O-dUNQnhvT3GjjqgyoyP6jPguPvek_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=FSResizerSetup31.exe

https://docs.google.com/uc?authuser=0&id=0B4QytAM0Z_ZwTGt5aDRmUjN4dE0&export=download

http://gsf-cf.softonic.com/e89/22c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=36892&instance=softonic_br&type=PROGRAM&Expires=1436785366&Signature=MshtoM4uvRIVphZl68suThfo02Cm-PQ4QN2bwF-Fc7JXkJOucBZFjt825BQFXbVe2cx-L-lgGl3U3pbLSwHzG7dR-VLVE4IWNoK7i7yVIy3OGv3HdQ6EavUm4FKrnPMFQgO36ewuv8HUuhyIp~S6rdU~h64VBoLaifRDJqYVkWE_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=FSResizerSetup31.exe

http://10.10.10.10/S O F T W A R E S/Old Collections/.../FSResizerSetup31.exe

http://gsf-cf.softonic.com/e89/22c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=36892&instance=softonic_es&type=PROGRAM&Expires=1468303631&Signature=f8wLv5jevbr8NnTFFX-pIVoEa1E4x5bSFvbKwXQvgCMidcQRZPgEPEbwy0wCSdjElJGzpayMgM6UfMpwRCxixrqwUHXOX7jIsaogww5Cf7VXswtaEIQSbwWl1PZXBYB9d18digTbzeR4DpRRCmTzFxze6n-jNGC6THsk91R4-8w_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=FSResizerSetup31.exe

about:internet

http://210.212.232.7/.../Photo_resizer_setup.exe

Latest 30 of 35 download URLs

Scan fsresizersetup31.exe - Powered by Reason Core Security