powervideokaraokesetup.exe

DOBLON

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
Doblon   (signed by DOBLON)

Description:
Power Video Karaoke Setup

MD5:
cc4caf3676ed66490d6bcd1f1474d712

SHA-1:
eb29064e32455a325df4aaacda7109fdf06a77ba

SHA-256:
b6ec7cbc1210807d17a6bdc79135dfd183db5babf94c86c6e987d0fada4993c8

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/8/2024 8:46:53 PM UTC  (today)

Scan engine
Detection
Engine version

Quick Heal
(Suspicious) - DNAScan
12.14.14.00

File size:
4.6 MB (4,808,416 bytes)

Copyright:
© 2004 Doblon

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
English (United States)

Common path:
C:\users\{user}\downloads\power video karaoke\powervideokaraokesetup.exe

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
8/24/2005 12:41:25 PM

Valid to:
8/24/2006 12:41:25 PM

Subject:
CN=DOBLON, OU=Secure Application Development, O=DOBLON, L=Gdansk, S=Gdansk, C=PL

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
3FD0A3

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:sd5vD2QySOow2aRTMqH7eod6Z/15RojhhD2eR0Pi16DhHekuhle026L54QjjWc:05vySlwTRTMqbRIti7240PiqBekuh4vs

Entry address:
0x97F0

Entry point:
55, 8B, EC, 83, C4, CC, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, D6, 98, FF, FF, E8, DD, AA, FF, FF, E8, 00, CD, FF, FF, E8, 47, CD, FF, FF, E8, 3E, F3, FF, FF, E8, A5, F4, FF, FF, 33, C0, 55, 68, 9A, 9E, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 50, 9E, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, B0, 40, 00, E8, 9B, FE, FF, FF, E8, 5A, FA, FF, FF, 8D, 55, F0, 33, C0, E8, C0, D1, FF, FF, 8B, 55, F0, B8, D4, BD, 40, 00, E8, 87, 99, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, D4, BD, 40, 00, B2, 01, B8...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
36 KB (36,864 bytes)

The file powervideokaraokesetup.exe has been seen being distributed by the following 15 URLs.

http://gsf-cf.softonic.com/eb2/906/.../file?SD_used=0&channel=WEB&fdh=no&id_file=31810&instance=softonic_es&type=PROGRAM&Expires=1478001734&Signature=hK0zY~tzkTN0oLFNSMbiiVh2OeoiBKPSHDWd5R~1adtZoFVvDgqrzMV9JBq1GunpFpRcW6stsycBc8Y-SUfwZ-sjYClc~OKApAxHoKajI0jffrITevYOBNuewD~lq6gZYQ0wFd8i3WOOwlQaHd~tFllRD3WKOMtFyCKdn6zggVM_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=powervideokaraokesetup_1.2.28.exe

http://gsf-cf.softonic.com/eb2/906/.../file?SD_used=0&channel=WEB&fdh=no&id_file=31810&instance=softonic_es&type=PROGRAM&Expires=1460526492&Signature=SX~CxKs6UKVAeuHCUYuqMBgO2SC~u8aeHnOj54sEhe12sU5TSuJa9c3-6Gs-ZxNV37cOfzUq1kWl7PmXoDdtTdWa-c11Hci4QlC-CTMGklm3lwFzeVvaFOcJyn1AGWLSdUeUY99peA3TG~pzh52nUHoeW0-E1azAjUcGkQVQheg_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=powervideokaraokesetup_1.2.28.exe

http://gsf-cf.softonic.com/eb2/906/.../file?SD_used=0&channel=WEB&fdh=no&id_file=31810&instance=softonic_es&type=PROGRAM&Expires=1478028930&Signature=RA5nBF8GeD5d-9hm-jyxmf5eceE~CKyHV7gSaN2nnE11SGIx-bzmZsFAyVSxQjLQMVMr8KBaTx5astZEYYDdZ1es0i8nFmwShDXdq6sLxr0K4GsAO~xl4ZouS47HehiKCs6pYCnrYflJ8rURpsrbH2m58QsSn5widPuflPZ0gLo_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=powervideokaraokesetup_1.2.28.exe

http://gsf-cf.softonic.com/eb2/906/.../file?SD_used=0&channel=WEB&fdh=no&id_file=31810&instance=softonic_es&type=PROGRAM&Expires=1465185112&Signature=VG9HBVrhY5N6puo9F6eAOvD-PLnnuc0URG-FWlzEdfeqSVPqpDwMalXlhtNtI7--X~4k4-mGEjpqr0r1GrsbmzlMTPN9mf97FSjp1BTbJL~iKnnuEgYGpWMljbqcjMjCK3ZZTYKKygQZCukGXyxYxbcK~P~VdbhBtolm~ZXv-Nk_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=powervideokaraokesetup_1.2.28.exe

http://gsf-cf.softonic.com/eb2/906/.../file?SD_used=0&channel=WEB&fdh=no&id_file=31810&instance=softonic_es&type=PROGRAM&Expires=1472313472&Signature=RVodurJn0Rcv0b-vwleHwIBkSdJuSIEoTFslpnFFUl3~lc6dbZCoe6qeJB2OGlETaTrx0SZJ3zDIBs8q-USHDwxdeif~-SGJ9wzpWg7oEwcy3CoeOGa0I0l8s8Qmy1KxGiGkdFLrVqsOuQApj6XBEMajY1YOz8fey1QZ-KXEZoo_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=powervideokaraokesetup_1.2.28.exe

Scan powervideokaraokesetup.exe - Powered by Reason Core Security