genymotion-2.3.1-vbox.exe

Genymotion

Geny mobile

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from docs.google.com and multiple other hosts.
Publisher:
Genymobile   (signed by Geny mobile)

Product:
Genymotion

Description:
Genymotion Setup

MD5:
45dd42c662da817ff91b8a715c879ea8

SHA-1:
6c93fa11ee6132cb64bc79203ef23f866f2c8fd1

SHA-256:
d772b6b33d374003ba1c1bbeab4b15b7b0d3e7e2970d77b6ff4297d19916486d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 1:34:55 AM UTC  (today)

File size:
117.5 MB (123,177,592 bytes)

Product version:
2.3.1

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\downloads\genymotion-2.3.1-vbox.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
11/27/2013 8:00:00 AM

Valid to:
12/1/2016 8:00:00 PM

Subject:
CN=Geny mobile, O=Geny mobile, L=Paris, S=Paris, C=FR, PostalCode=75004, STREET=36 boulevard Sebastopol, SERIALNUMBER=529 450 363, OID.1.3.6.1.4.1.311.60.2.1.3=FR, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
019C8F6918C3D89772071077D3D3CC6E

File PE Metadata
Compilation timestamp:
6/20/1992 6:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
3145728:A3rw98F7LcDjStrAJnlvFK9U8Tx0iBcUanhh+X/iHzu8o:A3r2Ac3SNA3vFK9U+0iB3aniX/iT1o

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Entropy:
8.0000

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

The file genymotion-2.3.1-vbox.exe has been seen being distributed by the following 12 URLs.

https://docs.google.com/uc?export=download&confirm=xqzX&id=0B-ZRM453gBpfdlhYSkRFM0FJVms

https://docs.google.com/uc?export=download&confirm=gWEA&id=0B-ZRM453gBpfdlhYSkRFM0FJVms

https://mega.nz/temporary/.../VkpyTLra

http://d.likelyaa.com/?ic_user_id=9289&data=H4dvEOjjEN9UXYqK4wNcsFCR0cLoo57/U2Llr4Nt8yc/fyJpwq8x4vpxkAs1/cFpy139LFYZ3lTZyBYoooP9Uz3Rf8moUsWaJgcge9cHBIXeHc6B/K6 lLG0mGfPwF6uoHK51gxKTPcqi8qHqh72OHsVZ7IsfIMZq qjh3Gpm4xs1KI4fCoacghmegFy X1CjvqYpeMz2yg1XFw4pY8kn2geNeaATXYp YUgIDnDH1hfDKmZ6QLwTFx5k7uZcBsP2CwdUgsKT6zKCaZIemKu2zamivlZJga9XWKaPr5MMmXwrCcM6Qj5Anv3Ps 1IRD6wq2ePVOVnjBUWkHa10icOvQnK/FOZlDVBHlZmBAsf7U7LltutqQnjw5celoRiFgOV4Vxj4B9KQGo09mtJNhnAjXjYtoNf97TAqpxrIqgeuRdMIADUxpMqtDvBDKjq6ywaB6JCfbtnFwFBolp3kuaYvixwZXinD2lD8Qma38phT5tp9oj3OaWeXZ9SiGDu1OT7ZcArndx1gUPOmDoKTDVDEI5LlhSHfUiV8maHsaQZt0BqjhBugbeSxiVsAo1r2uPkU0jMhqB5Q92YmoI7IfZ7ItKgZlqZoMSZR/fgBKf8nthFokZOiyj pGwcJsdzGDef3oge8n7J1QFVyXnBW5Ixh0u0SsqFPBoLbUeNOsgl 3CxIyzduwZlcH/P1xO7XtAdKCxLQGeKskWvhBNjnI49zFE39 ok3pHjReUnWYzew7rMpY=&key=Ks6RuMxJzjtZ/2jWaAYm 8sgw/t5mHHv CpJocPHwDxEajlMnlc49TLHa7/6VGY6o7OKDhCduW5l9QC7oaQw2kz Iy4IM3nBEm1m6Y57S0mocWqm0f4O nYXmc0q2BQ5ako9gN7YVHjC 8nqUR0mfrQeecMWMuoul1LKCdAohlSRdDE4bCgK/.../EQMmN8DHH

http://www.grabupdateshare.com/7HOdQ1BBhtAjKpMEkI0TjnDF3tcq86LSgnmfYRiZqqi4JtpcXMCKzLNDGkkIlOzsODekNh0FA520dolVmx1hZr Tz4VgK8Shsj103RkgxQBkfOLoLL2A_XSpLvC0wg7i_dlWG26gPtMLu0feH9hepVy Laf8U4mGhYRfQfof8_qrE VRqVb8bzBxqKAnLrBzewct3JAEfUYqUVOi4Rz6GWqPVAZMkJBFvjpy3yoGqeo9TIA83jPZdC8BsLlNydzeTJQWXxEYe97S1izimlo7bRBZ7bUnemGvW0irUv_I8DJls5Nd6uyduLeCBj8BMO_f25GlQxK6BRg7AwvUqWu0NS 5EYBdx7oV8X6xXlRxpZ4XncF Mw2tb mqTqazxf1DnNHcG5XyiQ8yctkRKGkLqOSyqFMM9OLsSRRNdv0YHYwIJlQMmaxn_NINCrcnPBZ1zTG3M_ZBGwdC5dAEEUVg9s3JjvOvGL6SalLuyt QG3lwgoI7agGOWJm8m5BBWr8uE87lqG8iLPBDYESKs1ujQH4pkFwDmn0XlHd3Minh05932NaCAyW7CgonKRSZdOSK6_Lym5eYcPYzM1xzt5K0M6xIYH5JH Zw7W6aPXWwPmFDDtq7S h1QGgfxc9Vmg JGM7s3e0K1dTqdqrfYF2o8miDwF0oJ1zJzrlkSGy_VkI6kDzi_ng=-G0wAAGR3ntc2s5Idr9txWkJ5IJxy80CxJWEYaGAH4COHrEThY_TGFAX7vrfbOMv0l2IUg5I6Fqo2v qAR0GGW59TCrn2DA==-e

https://d1zjcuqflbd5k.cloudfront.net/files/.../xtdy?response-content-disposition=attachment; filename=genymotion-2.3.1-vbox.exe&Expires=1424533548&Signature=FSWU5v~RpiXj28HJZqwgD3qMMvQ~TZL9EsjlltLCaOMw6u0lJuqDeJeFTJ2Ew4zXD2Bf7RD3nJGT7q5vvPxPBdor5KFgnhwjIh1EqASzhnfKbh~IfcS~qXtNG7CB3nkn2~pb5lVDcYdETfXnaXTSuhKwT5ax1YX1sps0OFroFGs_&Key-Pair-Id=APKAJTEIOJM3LSMN33SA

https://docs.google.com/uc?export=download&confirm=iFle&id=0B-ZRM453gBpfdlhYSkRFM0FJVms

Scan genymotion-2.3.1-vbox.exe - Powered by Reason Core Security