javaplatform6.0update7_jre-6u7-windows-i586-p.exe

Sun Microsystems, Inc.

This is a setup program which is used to install the application. The file has been seen being downloaded from oraprod.samdomain.com and multiple other hosts.
Publisher:
Sun Microsystems, Inc.  (signed and verified)

MD5:
5e53c81cf69ef2f6b1c6051e58252f44

SHA-1:
61bc5ba06ae226f72342f18db4366933b594cf86

SHA-256:
a065ee3b0e8abf93702c65da858db50dfe9bef47ab4db17bca075bfff5a420b8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 2:26:52 PM UTC  (today)

File size:
15.2 MB (15,984,024 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\javaplatform6.0update7_jre-6u7-windows-i586-p.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/14/2006 2:00:00 AM

Valid to:
7/16/2009 1:59:59 AM

Subject:
CN="Sun Microsystems, Inc.", OU=Sun Microsystems, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Sun Microsystems, Inc.", L=Palo Alto, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
29ABBFB304A781829FD1E62C773A4AFF

File PE Metadata
Compilation timestamp:
6/10/2008 3:12:19 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
393216:ZS4KiUcg8F4DqEYy1TdnGrFHTinkJ+Z54amls:jrgU4eET1he5+Aaazls

Entry address:
0x5526

Entry point:
6A, 60, 68, C0, F0, 40, 00, E8, FE, EA, FF, FF, BF, 94, 00, 00, 00, 8B, C7, E8, 52, ED, FF, FF, 89, 65, E8, 8B, F4, 89, 3E, 56, FF, 15, D8, E0, 40, 00, 8B, 4E, 10, 89, 0D, 14, 27, 41, 00, 8B, 46, 04, A3, 20, 27, 41, 00, 8B, 56, 08, 89, 15, 24, 27, 41, 00, 8B, 76, 0C, 81, E6, FF, 7F, 00, 00, 89, 35, 18, 27, 41, 00, 83, F9, 02, 74, 0C, 81, CE, 00, 80, 00, 00, 89, 35, 18, 27, 41, 00, C1, E0, 08, 03, C2, A3, 1C, 27, 41, 00, 33, F6, 56, 8B, 3D, 54, E0, 40, 00, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v7.0

Code size:
52 KB (53,248 bytes)

The file javaplatform6.0update7_jre-6u7-windows-i586-p.exe has been seen being distributed by the following 50 URLs.

http://oraprod.samdomain.com:8001/.../oaj2se.exe

http://development-2.adis.co.id:8037/.../oaj2se.exe

http://glo.dev.com:8000/.../oaj2se.exe

http://erp.sugunapoultry.com:8000/.../oaj2se.exe

http://mogamaa12.union.com:8003/.../oaj2se.exe

http://prodapp.alkhorayef.com:8000/.../oaj2se.exe

https://sia.ife.org.mx/.../oaj2se.exe

https://appsr12.gpv.com.mx/.../oaj2se.exe

http://appprod.cocacolaegypt.com:8000/.../oaj2se.exe

http://oel1.advalo.com:8075/.../oaj2se.exe

http://wwwin-ts1cg1.cisco.com:8003/.../oaj2se.exe

http://agendasc.telefonica.com.co:8000/.../oaj2se.exe

https://erpappprod.wtpk.local:4444/.../oaj2se.exe

http://vsltrn1.applaudsolutions.com:8000/.../oaj2se.exe

http://unitaskvis2.unitask-inc.com:8000/.../oaj2se.exe

http://pptaapps.com:8000/.../oaj2se.exe

https://erp.abril.com.br/.../oaj2se.exe

http://prodapps.com.sa:8000/.../oaj2se.exe

http://apptst.edc.com:8002/.../oaj2se.exe

https://oracle.cam.software.dell.com/.../oaj2se.exe

http://prodapp.saudirailways.org:10510/.../oaj2se.exe

http://ebsapp1.rms.lan:8001/.../oaj2se.exe

http://vision.mbcc.local:8000/.../oaj2se.exe

http://ebsapp1.vicemhatien.vn:8000/.../oaj2se.exe

http://rcjerpapp.jubail.rc.gov:8000/.../oaj2se.exe

http://kronoshlb.chedraui.com.mx/wfcstatic/.../jre-6u7-windows-i586-p.exe

http://contiprodap.baxy.com:8010/.../oaj2se.exe

http://mis.brlp.in:8002/.../oaj2se.exe

http://gouprod.ifms.co.ug:8000/.../oaj2se.exe

http://prodapps.bestexports.com:8000/.../oaj2se.exe

Latest 30 of 175 download URLs