mafia-demo-us.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
MD5:
8e1de7acc8ff7e14d3819abba02d93cd

SHA-1:
3d00cd8b57ad81dcd826d1b1f54ea7075e559fde

SHA-256:
1da4272ba622cc93e7681243443e87c29b61034186f626b81d19e18db47ca444

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/25/2024 3:17:17 PM UTC  (today)

Scan engine
Detection
Engine version

Norman
Suspicious_Gen2.UYKKS
11.20140813

File size:
230.4 MB (241,606,656 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\mafia-demo-us.exe

File PE Metadata
Compilation timestamp:
11/21/2001 4:41:35 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6291456:Mp1ZH2hE6r11V7fJnN1sCYhf/nMEaRVsNP+TaAavZNeU+qI9C:g0E6p15fJN1sCYhfP0sNPBAwHbIw

Entry address:
0x3930

Entry point:
53, FF, 15, 58, 60, 40, 00, B3, 22, 38, 18, 74, 03, 80, C3, FE, 8A, 48, 01, 40, 33, D2, 3A, CA, 74, 0A, 3A, CB, 74, 06, 8A, 48, 01, 40, EB, F2, 38, 10, 5B, 74, 01, 40, 52, 50, 52, 52, FF, 15, 5C, 60, 40, 00, 50, E8, B2, F8, FF, FF, 50, FF, 15, 60, 60, 40, 00, 8B, 44, 24, 04, 8B, 40, 3C, 05, F8, 00, 00, 00, C3, 55, 8B, EC, 51, A1, A8, 86, 40, 00, 83, 0D, 20, 85, 40, 00, FF, 56, 33, F6, 39, 35, 64, 80, 40, 00, 89, 35, 54, 86, 40, 00, 89, 35, A4, 86, 40, 00, A3, 44, 89, 40, 00, 75, 05, E8, 0E, DA, FF, FF, 39...
 
[+]

Code size:
20 KB (20,480 bytes)

The file mafia-demo-us.exe has been seen being distributed by the following 50 URLs.

http://gsf-cf.softonic.com/3d0/0cd/.../file?SD_used=0&channel=WEB&fdh=no&id_file=23856&instance=softonic_es&type=PROGRAM&Expires=1446351197&Signature=NjulZM41SbrqK99WNTLRVzyhMb5TOnORYItCqQNB13DS2gDtActzSqc7xKku3C4jvexDZOBy8~Lv97fCkgDKccj6uwiA3YNv32kfsRnLJ52~DNeIPiZ6d5Ay2jGdOQOC2C1wxgFoFS6rFHJDNmpJQnyuUPVhfjaQt2EKmNtv1O0_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=mafia_demo_us.exe

http://gsf-cf.softonic.com/3d0/0cd/.../file?SD_used=0&channel=WEB&fdh=no&id_file=23856&instance=softonic_fr&type=PROGRAM&Expires=1486293999&Signature=BZDF5SrBmHqv2BLn-p1zbfMe447EbEBsOHvEzKKdvRRjVzwI86Ls1eQszZaECDEv9pmAZF3KaOy5yNBVICYwyIyJ1GTqDAVBqUtYJH4YEwqyMDqzRf9ZNcgU7fv7FormT7m1Kz29bthLWZ~Tapqj2q3jfZa4QUpNkj~gvV9TDrU_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=mafia_demo_us.exe

http://data2.stahnu.cz/downloadFile.php?n=bWFmaWFfMS4wLmV4ZQ==&s=i55c33vv9j6n5mk7mb87og1hv3&r=e227668b12844421e407f41dd1f9927b

https://mafia-the-city-of-lost-heaven.softonic.pl/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxANuQlqo9r4vkHI6iLIuhAJNGh5g1/mY4UPrVVzv8/sWZ/R2ryAR6AESBXkIyLGL1MCEBEDfAHXmvns0 lOJ85oeyQ49eZUQaIfTG6W/znn821BcQzC062PQuF04UZhdTqnd8LWiBGoaotegSSVVm2RsWiwzkzB5QwljW4TXDU0PpPFyaip8rQkLQbyBGppiDTaaX1rXRPE1QDrjYn 5NtLJWR2yZnodLyIK27IBE waWSMcqblyrfuDOkd1/4bG5oGQE 7YEI9zMQQQ1dW9UwNAU0zUl88ttFVsVu2qD6YJNqzfQa0jbOQDji6RZ 8kReZdDEjTxOuywPQIkzUzE2zsmFhOJPfwciq1kMu7SJBgmfeKLdcjhCA0BjJYdS54Tp5boCkjK8ym5dZOQNBzhZnnTUzBR2gpXJ3VxVMYWfd2Vk1U6YU4tyIGXL/.../9IhCVxKPLTxN1Oz1ejYBGUU5M7nvTYOzY85h6mM6MpYE4WVia29Mzlmuhy3z7c6zPYtlCHG7CKp6rP13Iwao 2lKyzOmxsRkoelcsq9NH

http://www.tamindir.com/indir/MjAxNi0xMi0xOSAxOTo1OTowMQ==/mafia-demo/windows/.../

http://data2.stahnu.cz/downloadFile.php?n=bWFmaWFfMS4wLmV4ZQ==&s=iij96odr2hi8dehlfoj7h3u543&r=779cd3ad4441f74531edf5d64bafc919

http://gsf-cf.softonic.com/3d0/0cd/.../file?SD_used=0&channel=WEB&fdh=no&id_file=23856&instance=softonic_en&type=PROGRAM&Expires=1430902810&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=Isg97BH3zmBCGG~oJ0BehvNV3Dw0wYtItEWQEW~UhyGjr3W1FF65Nm07e6XQhL64eDcLG9dpQZ43GT94VLRvfctvy0kW1gsdxhly1Qwa5t2EOTrfig5w~1h78r5rVIG7XwQi3j33PkrqoT5ohjnjr7ZiMZnZ-5y89TtaNzKHWMI_&filename=mafia_demo_us.exe

http://gsf-cf.softonic.com/3d0/0cd/.../file?SD_used=0&channel=WEB&fdh=no&id_file=23856&instance=softonic_pl&type=PROGRAM&Expires=1478336959&Signature=JZ0KQcIepDTGpHd~EZy43RO4sUqU3E18se-WOFr1q~8MaXTnS4hJ93BJVhq4eikW2pgy7cFmRoGnI1mbWdFtqqB2WXbJ1Uj5PfPVVb9GJT6BmNMaAO8wxYn5y5m35rON~hrxBKSEQcWDhdzNuLAqyva0kMiiJCFobR1XdseL0XY_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=mafia_demo_us.exe

http://i.download.idg.pl/fannef/290ff61e8f1432bd624da707b3e03273/56b5d837//zx/cyberjoy/dema/.../mafia-demo.exe

http://gsf-cf.softonic.com/3d0/0cd/.../file?SD_used=0&channel=WEB&fdh=no&id_file=23856&instance=softonic_pl&type=PROGRAM&Expires=1478242959&Signature=hiYNYLwDXksY~oKP7W4AtAudClpuNkkFoAD~cpVJMBdMDG08WRdDMnAUSkJ6q6p~9PmOidWctaJ7ojR5rLGN-zwxbT08qmE5se8PWEFSsM8aCgP48nVSt6vtK7ntIvXwrRHZ7~BjubBCsY8zW59Rm8HbmjLnQNmvPzkByX5YXVQ_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=mafia_demo_us.exe

http://i.download.idg.pl/fannef/71097d3ee09286abf3d5e42237296ec4/55c5cd21//zx/cyberjoy/dema/.../mafia-demo.exe

http://data2.stahnu.cz/downloadFile.php?n=bWFmaWFfMS4wLmV4ZQ==&s=0veqjpb8l0benpicup0p2a5or5&r=23493b00ff7dfdfda5781f925485128d

http://gsf-cf.softonic.com/3d0/0cd/.../file?SD_used=0&channel=WEB&fdh=no&id_file=23856&instance=softonic_pl&type=PROGRAM&Expires=1482815985&Signature=FbPN68j0-1Yce6lOfdrJWJFghTEGiW~5OBauxi5MLV99lISzPmoyzzCIFwfMnhkaRaQD~BIi5dN4TWtYY7mte1wBUaikLDKkaWd~1EDCYTHVP8exSlWc6KIhxprYziS0fygLg4gHfMXv~Nfq~Aqz~C1BlN1ukFU2SQ8wcky---k_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=mafia_demo_us.exe

http://i.download.idg.pl/fannef/bbbe6b1417025a960782a7ed6a245f2e/581f5576//zx/cyberjoy/dema/.../mafia-demo.exe

http://data2.stahnu.cz/downloadFile.php?n=bWFmaWFfMS4wLmV4ZQ==&s=ph0dd44cbcnuqj5uq76toento2&r=a746a13b9a67e2d4d2aa4bfd46784a2d

http://www.indirveoyna.com/indir.php?id=883

http://data2.stahnu.cz/downloadFile.php?n=bWFmaWFfMS4wLmV4ZQ==&s=m1rh73sqe8p5ld5mpq373o80j5&r=e06a852b30c63e887f42f543c1863a4c

http://data2.stahnu.cz/downloadFile.php?n=bWFmaWFfMS4wLmV4ZQ==&s=a8aojr8vmotc9vaa5kjbjeg6h0&r=3add7be7b872fc33c642d690482e4319

http://data2.stahnu.cz/downloadFile.php?n=bWFmaWFfMS4wLmV4ZQ==&s=olmpohjpb59e24rt5lm6r7c3f5&r=c7eb061edec284a8673c8427dd638fc3

http://data2.stahnu.cz/downloadFile.php?n=bWFmaWFfMS4wLmV4ZQ==&s=diejqlsl3hemfh2u0t63a7q4t2&r=701df14440fcc5ce6335bfcf1583695f

http://indir.gezginler.net/i/3622/.../

https://mafia-the-city-of-lost-heaven.en.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxANuQlqo9r4vkHI6iLIuhAJNGh5g1/mY4UPrVVzv8/sWZ/R2ryAR6AESBXkIyLGL1MCEBEDfAHXmvns0 lOJ85oeyQ49eZUQaIfTG6W/znn821BcQzC062PQuF04UZhdTqnd8LWiBGoaotegSSVVm2RsWiwzkzB5QwljW4TXDU0PpPFyaip8rQkLQbyBGppiDTaaX1rXRPE1QDrjYn 5NtLJcBPWu3vtoz4Lp4a5uOgmrisykwROySkzbP6ZZz51nlWpc5ZLrayCI6jmZ4LgCHG8g5VvQhwSw6WsJoImesc2fQ5iGNwGj67GNZvwznRmofEiNS08NabPYvV4ISWVhTClOFZI9PuhyXB6dXHJXFRBTNPm2NlugKmmkijZmo8sE2pk6r4Y1VEqDmnCygNzJB/BW5GBbBV0HDmnNbDJBvHT0WfaEM5NnRw XO8N4VT4KHVpNq/rSs/.../mx9QjXS4YS3jjJrOy6uiH6NkNo5TehNKOD8QjLltGUU5M7nvTYOzY85h6mM6MpYE4WVia29Mzlmuhy3z7c6zPYtlCHG7CKp6rP13Iwao 2lKyzOmxsRkoelcsq9NH

http://data2.softmania.sk/downloadFile.php?n=bWFmaWFfMS4wLmV4ZQ==&s=8tukk0q7bgu3362c709akpem34&r=2a752ef9a29efb863e4c18aa462eaf1f

http://gsf-cf.softonic.com/3d0/0cd/.../file?SD_used=0&channel=WEB&fdh=no&id_file=23856&instance=softonic_pl&type=PROGRAM&Expires=1474508339&Signature=JI2QPEz-aq0kzQ-YSJU9S1QEQoATK2vglKs-mzSKJX5zk3RE~RgladAkJwEGIXAhCFhtwVfmQbF4ttdSzRNceblaBr~1B9jI7XfotYk9kM9aVpfvsDC8~CYrDRVGALPWulRxxtS0YN7oID9BItzkDiAchlxBqUkEhCaHdH7WNSE_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=mafia_demo_us.exe

http://gsf-cf.softonic.com/3d0/0cd/.../file?SD_used=0&channel=WEB&fdh=no&id_file=23856&instance=softonic_en&type=PROGRAM&Expires=1459737892&Signature=Qh1m29FDtL4nN-NyGmwwEb4u4nUYt6t4l2l9up2Rh~GvmxqhB60rZadj~PB-3~g8~1UmgY68dLhMlteajjQDC3L8Zl-IbPX7Sa2A9B2UkZ0yqP6h-H783aTxJ4wTbf2rwpwZJtwRqEMDD77xVhkpygWBQDSus3A550~E6By6m20_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=mafia_demo_us.exe

http://indir.gezginler.net/i/3622/.../

http://data2.stahnu.cz/downloadFile.php?n=bWFmaWFfMS4wLmV4ZQ==&s=bemgui8atdpfvdsodqe2o0h9d5&r=ebb055a9a63045db3cf95df4c70c19a8

http://gsf-cf.softonic.com/3d0/0cd/.../file?SD_used=0&channel=WEB&fdh=no&id_file=23856&instance=softonic_pl&type=PROGRAM&Expires=1476654003&Signature=gQv7VOhrFXsx0xMeHs5I14v-9CQ-SgsXxfxKeg25yjSJzPk13iVClgVVzl3DCj7AVhhwnfxk5CKbT0gKlLvl4BY6YHOTQDi-2-ZTwVWxK7F~Eqvm66aM3lvbq0eJLXvvqYtE7bEOa7RRWD9FOHs-Uq3MqMTafDI1VpVslmLX5lo_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=mafia_demo_us.exe

http://gsf-cf.softonic.com/3d0/0cd/.../file?SD_used=0&channel=WEB&fdh=no&id_file=23856&instance=softonic_en&type=PROGRAM&Expires=1476344926&Signature=cv1e02yv2kZp3WR6uysznnuzdl1E-pVSsMbow3uLrOa3huKaTRt64n8NFva0t9k1YKzPsEXnXDsz24w6lC4vT2q1DskOwfslqS57VB1~W7Kw-V1OSnasBVhsKaa6YB6eyjFfi9BsP9ySgeWqivVeiD6~op12sHB2BZPsZ-~-Zo0_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=mafia_demo_us.exe

http://data2.softmania.sk/downloadFile.php?n=bWFmaWFfMS4wLmV4ZQ==&s=c924hfquibfqh8gr8io090qas0&r=a5e736e28d8084832907716d76709b39

Latest 30 of 101 download URLs

Scan mafia-demo-us.exe - Powered by Reason Core Security