microsoft lync basic 2013.exe

Microsoft Corporation

This is a setup program which is used to install the application. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
Microsoft Corporation  (signed and verified)

Version:
15.0.4420.1017

MD5:
2ce136d5822a4fc9b008b6a8a3e7f81a

SHA-1:
8641e935dfbe2f94bfcf8dc74663af77e09b2779

SHA-256:
5bb10fab0cba3425e7b6307954dccc3c9b4a7d7ddb42670d86af1c9ecd48388b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
11/30/2024 10:03:02 AM UTC  (today)

File size:
302.2 MB (316,848,336 bytes)

Product version:
15.0.4420.1017

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
Microsoft Corporation

Valid from:
7/26/2012 1:50:41 PM

Valid to:
10/26/2013 1:50:41 PM

Subject:
CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
3300000088590E3C511FE26A67000100000088

File PE Metadata
Compilation timestamp:
9/29/2012 10:45:41 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.10

CTPH (ssdeep):
6291456:bV722YKXCCq8wQgmhLk2l5JfeukpVAC8Yz/5K:bkUtLzlbFkcCx4

Entry address:
0x2F3B3

Entry point:
E8, 58, 52, 00, 00, E9, 81, FE, FF, FF, 8B, FF, 55, 8B, EC, 5D, E9, D4, 05, 00, 00, 8B, FF, 51, C7, 01, C4, 9A, 40, 00, E8, D5, 52, 00, 00, 59, C3, 8B, FF, 55, 8B, EC, 56, 8B, F1, E8, E3, FF, FF, FF, F6, 45, 08, 01, 74, 07, 56, E8, CC, FF, FF, FF, 59, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 83, C1, 09, 51, 83, C0, 09, 50, E8, 0D, 53, 00, 00, F7, D8, 59, 1B, C0, 59, 40, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 83, EC, 10, EB, 0D, FF, 75, 08, E8, 86, 53, 00, 00, 59, 85, C0, 74, 0F, FF, 75, 08...
 
[+]

Code size:
283 KB (289,792 bytes)

The file microsoft lync basic 2013.exe has been seen being distributed by the following 17 URLs.

http://dw.uptodown.com/dwn/x1WOARKYk6vSaVvS9obxOLrok4jOk9FFJiwcwekTbmQ8CU8yNyhSvTAYtUXF4BXu3eljmI0hKkU-OEvvDtstFMow5wW5-hcgIqJQchVZCj0vK3iH3SSXu1O5pWKv5J1e/nH94Y2_nZ45_MxjuDUgi9fNU1aFHyBoMZSmWhxssgL1t_ZCrYPei7Hb2_JX9JCvlxcVE9RIZJ_7nKpUEQqeylf1VMY2FDOJMkHLJRVp7a86wvmemkWwGBYbMPZ4UmfTu/x8xT-TnXz3_Muk2Sjrz0zttNSYujUAFxxShklGv-M6XQoE7WIB53LZdcS9iHc0LAOcq_PbwC4jYzNKW0Xd12G_1bLy8M0XVE4oWTd_2n3yaXU41CheIyR0CixrjKk9kr/.../

http://dw.uptodown.com/dwn/4eyzc6fVHZWP3QEprZgnS0NbxFJmWxIiHfksjqh1zScB534VGRR8ZwuXI8WaeqQkzRwFMcYi9r8GRyEUP_QsJC26kLrsBG5zXvU2t6wde-PngYgS4jeCWFava_ueiSN7/r08eNxwbwXH2k8aDkPtd_AA0ap8N8lhu6tkcLieNYS88KEBDUJ5XUSHCnuvSLjRWHpnhlxZml7bE_WMatcFpdtteOkuJXfho4prwTNgc2T_FvxhO6cAoARE-_kxgzjTK/OI_VkqhUGjfcD9jZXD3b1J0gdHC8JUPwroWqE7TnUX73ahti4SXOlCg71m76b9_NT8O8frVRXGVgDJbJOT4-tU--cVLcqRO_rBIodQcXddFTC9Gg4PD-7zjKMhPn06C-/.../

https://dw.uptodown.com/dwn/rsB12oWH2UWLgtTxsK6ZMsObFt3WpdyARK8OSS8f91Z4eKdILywKnQZ3t2VSZwd18oo9TvWGZu9_nKKDpKFTzdKpN25qWG4ZVt9OY6N_QpC7jWg9ZDqZCwCmkJBsdWMv/SRT-Kl8QM6tPwM-eFA09GC7iYn3cgsQutP60Y3w5uZvd-VyETycVDogHfSnObUWNWt219lNR6sEtoooQAwSQPuh1NR9JYSfNElUA5enCiRBYdjUuO-JI5RuAPJX7lZu7/lEDLp4z0MOvwRDdMmZingugidLSxnDYu_x8hh4GGWb5eDyTpyYgQORknv65rVSXjLKWrvcOJwLYPXElwEK2lV1ar6LGhBFVOwEx8_YTD-H71EigapU3nK8bPSB7q3hrY/.../

http://dw.uptodown.com/dwn/eRKtE_2ASx0xyhFZqzMojElR2pCuIfQN-ZI64A4EclZ3TA-eAWiQhJS-El5K83ZCue3V7eOKY-O0WTJvmXTG1t94LrSEGM_H6DK24iL63oDk7QY3TL5JUA2LnGqnd7-n/AN1ixavloPbwUSaqqJ3gRuDbi6p1Niq_WfUQivCi8xQxjwINqwm64zrvLV_HV96zpgku89xOgMvW4v3EyYUvetaJmn-PSJYADUWXgxgkQAmQlYx7ie_4IeNkVNCQzZe3/lrv8gAQ8faXh6R__O1Z3Z0MXURsN-hoJDn9_qq1ZWPHYNiV-6CKINneZ2_SbA0lio89AEh613FCCu2I6zlsDT8TOAeO_WQQJWVTKT6Yp6qFmok1AxsnxQiVlESdkuZnp/.../

https://dw.uptodown.com/dwn/u7uwqUOKKzx3wDZi8d9syCWO0hU0B0Di3Pl8GgZQs3e4BUTSRSTtfYE4Ktob6INQqGjw4Jl0rFSkUTY5xFkoWCOO5jtHsOAwK8piPDhXtUIDnutDMAEE7bID9zYgYMrf/FV7yLWgoX2coNsUYGPm9RU-aoEH2RKCVLEZQP9tAJXVJY8DReZWTcM37m627iymuYFqb55snJVrymb8J4NPkPLJff_vEKojuz1Z4hiHdEHCG6ylCuDkSvck-OxM7dbmx/SticfkdIMfm6y_SMceYFKOd7UcfWg8SxokeGBYMXITPHDDXMvvAL6tsYah7zJ9XtgmX5AXnEBYE9UIuTrsUmGh6j6T1zTPnU-038Eogs5ls7UYj8r1BRJFEzpGGTmiPI/.../