mozilla-firefox-46-0-1-64-bit.exe

7-Zip

Mozilla Corporation

This is a setup and installation application. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
Igor Pavlov  (signed by Mozilla Corporation)

Product:
7-Zip

Description:
7z Setup SFX

Version:
4.42

MD5:
f8f54f33d63544f8885f14716300ee2d

SHA-1:
22126cc057b295d6e79d5eb195b3bed9bb26776e

SHA-256:
f4ddcc4d23d8a5cae91f3737bd31c15e91fd8bea99a04880a302eda8c783ae3b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 1:57:31 PM UTC  (today)

File size:
44.3 MB (46,448,488 bytes)

Product version:
4.42

Copyright:
Copyright (c) 1999-2006 Igor Pavlov

Original file name:
7zS.sfx.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/9/2015 2:00:00 AM

Valid to:
7/13/2018 2:00:00 PM

Subject:
CN=Mozilla Corporation, O=Mozilla Corporation, L=Mountain View, S=California, C=US

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
09E65AD807B8497B0749D41568D626D0

File PE Metadata
Compilation timestamp:
4/17/2014 7:29:40 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
786432:22q6Z0sDV1ZrJloVICWjgiA3l5qjP+2uiJHwbmqhSLs04zEdtYHz4H5k1MNG+:R91V/fE7l5qb+2tQqQSLs0Dd2PsG+

Entry address:
0x21E30

Entry point:
60, BE, 00, 80, 41, 00, 8D, BE, 00, 90, FE, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75...
 
[+]

Entropy:
8.0000

Packer / compiler:
UPX 2.90LZMA

Code size:
40 KB (40,960 bytes)

The file mozilla-firefox-46-0-1-64-bit.exe has been seen being distributed by the following 27 URLs.

http://dw.uptodown.com/dwn/oUv9gXl6Qsq-HQx_eOii2ONx5HvreABdCr-2yi_BWuD5J4mxTySPwtorqBa2MhRYzkLTaERLtwdwJsZketjRGiIOEPPZgjlSgStxLOrzonFa9sxknUzMvdDC5ItKHZL3/HwfYNJz2lrtUdXSRIUNNUQmPOJEmoR8cPsfCFTdjLwVfg5wEweWRnOLAe_ZW7lYdFt1jL1UgsUoQ33QMQj2xuWo7g4Z8zYHhGfTkMJUTN79CAIMC2YV1rpVQ1sErasq7/KuPv0dkl36wAK7iS-KFNd0_nx1du_iHoOYdox7wZzFe2c19-7MP7iGG7q-q2Pl8qOS_zsrzJh6KRTO7T73Nu9sCIAhvCfsw3950ixYn2wjcWA3a1UjJmQqnwToGEZ37j/.../

http://dw9.uptodown.com/dwn/XsQXtIrb1-ipZ4olphV469nSZUJQgrbVv74XxQMEpxUK3r6wwY93MtrO_vdy8aapUdFHdN9_TUC1sDZfrIFkwaWG-8SkJznw3rr24_pACy6EQeXfcUkUJRmbceDXC8kz/S3QjlHWntXbUfFOyIhi_fp4vVq4-zUI8_3eYR9CbqkPXORv5XhxnQXakTdohL3wfx2hz3x0OYZ_rLwPfZUbeLJoTmlZoB3BLSPS4dOTAMEXsDpRKMm1jAWy3GCU79gdQ/.../mozilla-firefox-46-0-1-64-bit.exe

http://dw.uptodown.com/dwn/UQ9jXNoVtyVV-jfw4oTJUDlsf6zbp2gFYYh8E0w1MjznciEdgsnp6fR-kYZBARLQc0BvgHDseNoCpqVZ3HFm-JRgkCAX8kjYddBxDIQKNn8nJekm0P-ptKOyINApzTq0/SYa2lc-f-rBipVDBhf6hAMixmaVzIYfYme9li5FKgoYg8go8POixkxWyIpJ0dLzw5jYwieGLc6coIBy-dQqqnoPZeeHhplVDQ8yZknp_LvoBn4h9mVSALJdkWoETSEWD/y8Zc5x2OSM3uhr88q_2FMzeCihkrAsNA-2WV9KLw_wmnMsi8aazKsb2MIH62hpfHd8OIqFKUTKN1gM58XKzoKjHhZEnJ45bUAuR3ublTdih1RxgWuBnX6V2HIWFCGzlk/.../

http://dw.uptodown.com/dwn/DBPFvshCnnMlLnc2ZSjLiXOtnkO6M0PNtz7gmr46s2hMSAgJTvSK7W6mHJx2dVGThxuGKxSLPuYMPp5UiJFaGnFPNBXzV8ONEFP6l8VHpIuTxPgXnxf39bpijSzjky1t/auoSiAJGEn9h-EZKmuoLRQCwgznxP8YS5yx_69nuQG1SCHGOqGhDUkFyPrERWFMyTjsa8FgqR67DgH0bGmzB2dw8QWZEDrndzLTD6i8_YeeSqeygIp6mgE1QKFikTcb0/NK0VjUAMGstplu9yuvCD_ms20YD25TpU_KL1t2dX8QzSiVDVdluzx2D7COlRH6P5MqJU6D46WAjjNQUN-AmtW8-2RxKSvekzSHPgrf1OsQGoOf3SsbdxMY1uSLyYZlyg/.../

http://dw4.uptodown.com/dwn/0C3uZjWf09E5sZ1xmIJUd-4vnDJrZoYLqe7hJkWLRNyUw6XcEEuFcTmmGrFPakaKCa-0z5N7eqoJxh9FZwu7ylcB-T-0_VgPmYHuxcOog3ryVqg7yFKFgTSWBi0k4P_i/oU3DhE97p2IsA4jriXEJ6BXV_K5DXYDK3MdCmQ8KDt_WmSoi8IjGjwqDtZj0bDgsMP0BHrwZxnm5fkd-VvxPbpoT0Mta9mzA5gtHXsz4zVls0zcfGmSDWtRhDXv50Avc/.../mozilla-firefox-46-0-1-64-bit.exe