opera_16.0.1196.80_setup.exe

Opera Software ASA

This is a self-extracting archive and installer. The file has been seen being downloaded from www.capitalvaultsbits.com and multiple other hosts.
Publisher:
Opera Software ASA  (signed and verified)

MD5:
e357e941b8ceff230f9cff7234561db3

SHA-1:
4035d8471d1c4175e4964e85195de634e921e4cd

SHA-256:
d87621a24ffc470d993c8b68f7a16b215fce6b649db0e2ea1266caf52ea9971b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/2/2024 5:31:22 PM UTC  (today)

File size:
30.6 MB (32,097,512 bytes)

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\opera_16.0.1196.80_setup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/24/2013 2:00:00 AM

Valid to:
2/17/2016 12:59:59 AM

Subject:
CN=Opera Software ASA, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Opera Software ASA, L=Oslo, S=Oslo, C=NO

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1578A42784FCB4416A9A6C033418CD06

File PE Metadata
Compilation timestamp:
12/30/2012 9:49:43 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
786432:IHS1rOVVeCJw/R1q88D98gNKt5lqYEh1bbMQs9x:OSGVeV/jn8D3NVj1nMQQx

Entry address:
0x12DCF

Entry point:
55, 8B, EC, 6A, FF, 68, 50, 5E, 41, 00, 68, 60, 2F, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, DC, 41, 41, 00, 59, 83, 0D, 84, A9, 41, 00, FF, 83, 0D, 88, A9, 41, 00, FF, FF, 15, E0, 41, 41, 00, 8B, 0D, 7C, 89, 41, 00, 89, 08, FF, 15, E4, 41, 41, 00, 8B, 0D, 78, 89, 41, 00, 89, 08, A1, E8, 41, 41, 00, 8B, 00, A3, 80, A9, 41, 00, E8, 1D, 01, 00, 00, 39, 1D, 50, 87, 41, 00, 75, 0C, 68, 58, 2F, 41, 00, FF, 15, EC, 41...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
74 KB (75,776 bytes)

The file opera_16.0.1196.80_setup.exe has been seen being distributed by the following 34 URLs.

http://www.capitalvaultsbits.com/8wl1ZtFxQB3F3Bctkmp5LJ5Att_moSTQgq16YZoTBKDZci782kdBc5R4_6SufZgjp5jTc7XpM9e KMOpfJVvKQR08uLLxADSrZemSidbxkUIf1D7TKXOJsv r_Q_Ig0lcIzMN BNggq5oZtUYAEQ34vESBMOTb0hswseA60d86V2F4sKiCoPIJsX5KIdrrLISArSn5xoMk_PQDebe3QcH2ORCZcW_w==-Ow==

http://www.capitalvaultsbits.com/HkEVNzx2lUdvRK6f0R37YgcOrtPVq4KDb3cVhRojQZG6n1l4QzlKrMEh6muzPE5EjT5wFQz_AHjLx5OEKBxM4o2iDI723Poh_GzDWYfS2sn7nY45r4twFbH7ojVuB1q3ZcBvOOuQ1TmRzut1u3y1AJjMdY_4cTVNcpWi3xcbIqkf5Die4_TDRgGvX_3 whf5pA7ejs4NXMLCuEaI9VFWOafiOTY9rA==-GzYAAMRjbD6OeZUpwEMWcv9GsSkBcBw 34yK9MaUbxlUFArlvXO2khmaAg==

http://www.capitalvaultsbits.com/1HuAwd_XAN2XLdgAML0WahhQlEpa6SWshtNfkfAWSYpvhT93Yb28X0WwhxUnOsAOB6Fyi1apLdmHARTPVd12RB5kXlU_LGbKBeDgOogHj6kHWfHIpNL0LIqqyq_k0g uXL0o1ZA6SM_zQUjxgriKEp8Onj 5_PyfHwoQ VoJlUWsV3URcbgzDT127gyzKi4n2I6 Gfkhq1tHKIozIUQcnCvYkmfL2w==-Ow==

http://www.capitalvaultsbits.com/8u7c0zokFwSlsKGLLJKMaXaKa66I _JyCtxDUcLps7lS1qURXo02LuwrcL_VIDLBYfWqCbg6yx qTpckPLCoDrwbr6pMd2x_sra79MzSq4 mq_adqM35BvynCNH5lXOxJ0Hta4QJGCkx_OVwVpOjdALgINtVGdBrz_rVStJIotYyziPje h47JckiqLKwrQTImYfgA4p5EjA60Ro80IbOLtCMxCDUA==-GykAAMQDLo QaShgIgfsbSVw0sPG2LkOjXxj5Ac7wWPNWK5xzwE=

http://filehippo.com/download/file/.../

http://www.capitalvaultsbits.com/JpOo1l0Fi93y9nu_xAgg7CHHlrXU2XJ JDvo39TcUbVRgGyH9A6TjJfLvkMvYSBi2UQoDeoij0TBTjzi zXIsWKywfPku9nWOVOS7yoh8UTsFl0Orgj4uUE_J1RIeYrOeUruA0IZXM75dmjircdBRlp3dV 81 dtkMMgmbp0ADrOLeSNapWhkskWnlstA7kLQKRK0V64YFQ8xiaCep3o8Wa9LcwqqQ==-Ow==

http://www.capitalvaultsbits.com/jS7DiA_p7DuuXmmaDFH9fbx0aeQNWOA0HrF8Yf2mfDFi0v pZuC9r1h12E3gfdrc5GZa4P7NYFPFQsPe1sZV6MeUbh0hF57Rh1VKcEyLjEPQwWdlvUyXXzBYFYX0IIiSGg7ZBmSgGao4odw798PWe2FsU4NcRzaunksC5Wu5w3GaGYakExnRqCrLqWFNAgHmujWZWQMcnWwfILgKLFPjZGkQvGCU0w==-GykAAMQDLo QaShgIgfsbSVw0sPG2LkOjXxj5Ac7wWPNWK5xzwE=

http://www.capitalvaultsbits.com/WVl6OTRQVnBKUldkc2RGQlhiRWxwVFZKRWVuVTRlbFl3YTFVMGRUbERSVll4WlZCSWRrOVlTazU2U0dSaWMwMGxNMFFtWXoxS1RqbEVWVzQyWWxkaVJqTXlZalZ0VEVsV2IzVnZNWG96VnpodmN6RlZKVEpHVjBWNGEyMXlOME5rYUhWVVozcDBVelozWnpSNGRVMU9lakpMV0VsdVNDVXlRblJuVVVkU1QzQklja0UyTWpKNldtRnJSRFJGUjBsdVV6aDVTV3hFUVV3bE1rWnRUekZHTmxOeU9YRnhKVEpHZEZSNGIzSnVUREZuVkdwdlQya2xNa1oyYlVwdFkwTW1aRzkzYm14dllXUkJjejFQY0dWeVlTdFRaWFIxY0M1bGVHVT0=

http://www.capitalvaultsbits.com/TTFaqyD9zWSXFFRTAcleHwOPwdN1v dgqAsbl1Kep5DCXjtwBMKIm6UQe0EMz EkkamoL8jkwqZ0OM3CRzqSMxShqVbHiyhqZpyS7tD7bbM1QthO 89 9ZQy8RF TUDZj3S30bF bXR4H5K8MiFwwOJTbvk6cr2hcJnfWWPrNZmXER_e6uOMgUhMhN0vJo3idsl5a HiGBgXELhFzvyeXQGhb1AFEw==-Ow==

http://www.flashlaboratoryapp.com/c?x=9EBoZAu6W1kMSHZX0PACbi8OGTb1X9jZTzytXCmWfwg=&c=gQDY7c2jCrI DTvl8VkGS8Kqp4UV45nUtfsUcsGrKl87uB fXgioFHoDIN1mn2P2Vm1iXc4keaGGzkdJAlk3fz/wPX425tb9J488TFlA1ptAY7EBNJpidYub8FER9DDdIVsDMl9dMcsrMbG43Ls2wd23bv42pBCz3d5NfHfoYJf6JzASo1Kd23tJUQLnQTBF&e=0&downloadAs=Opera Setup.exe&fallback_url=http://www.downloadfree4.com/.../download.php

Latest 30 of 34 download URLs