multiplyroi_grand-theft-auto-3dfx-demo-58083649.exe

Steakhouse Media

This is a setup program which is used to install the application. The file has been seen being downloaded from files4.cosmicsign.info and multiple other hosts.
Publisher:
Steakhouse Media  (signed and verified)

Product:
Steakhouse Media

Version:
34.8.7.9323

MD5:
5cd370b2c65d64eb92a3b507deb86034

SHA-1:
91b7eb8f610a491f56b3cb30496249551f2c8c67

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 10:33:03 AM UTC  (today)

File size:
893.4 KB (914,824 bytes)

Product version:
34.8.7.9323

Copyright:
Copyright (C) 2015

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\Local settings\temporary internet files\content.ie5\{random}\multiplyroi_grand-theft-auto-3dfx-demo-58083649.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
12/8/2015 3:55:38 PM

Valid to:
12/8/2016 3:55:38 PM

Subject:
CN=Steakhouse Media, O=Steakhouse Media, L="Oakland ", S=California, C=US

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
00B6BFBB508E3ADDAC

File PE Metadata
Compilation timestamp:
12/3/2014 12:40:28 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:FJYe132Jb7B7wKOOP0Q3YHRQqvgIqJHrVBQ/8aH0izgZ:F6e1ibZwKGB0IiVBQ/LFQ

Entry address:
0x11D6

Entry point:
E8, B5, CE, 00, 00, E9, BF, C7, 00, 00, FF, 25, B0, E2, 4D, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, 54, EA, 4D, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, 20, E3, 4D, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, C0, E2, 4D, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, 14, E3, 4D, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, 8C, E3, 4D, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, D0, E2, 4D, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, 1C, E3, 4D, 00...
 
[+]

Entropy:
7.9635  (probably packed)

Code size:
56.5 KB (57,856 bytes)

The file multiplyroi_grand-theft-auto-3dfx-demo-58083649.exe has been seen being distributed by the following 8 URLs.

http://files4.cosmicsign.info/dl-pure/1108968/.../?bc=1108968&checksum=840615&filename=flash_update.exe&cb=-550071461&usefilename=true&executable=1198761

http://files4.filefly528.com/dl-pure/1125224/.../?bc=1125224&checksum=49339287&filename=Panda-Pop_setup.exe&cb=-1406567316&usefilename=true&executable=1198761

http://files4.laninteractive.info/dl-pure/1201655/.../?bc=1201655&checksum=91338841&filename=LoveROMs_Pokemon - Emerald Version (U).zip.exe&cb=900620041&usefilename=true&executable=1198761