setup-vipre-antivirus-trial.exe

VIPRE Antivirus and Internet Security

Threattrack Security, Inc.

Publisher:
ThreatTrack Security, Inc  (signed by Threattrack Security, Inc.)

Product:
VIPRE Antivirus and Internet Security

Description:
VIPRE Setup

Version:
9.3.3.2

MD5:
dfcac4f8bda1ffc161da6310c38759c0

SHA-1:
cff215aec7e41e39272348f2cfd9cf06cb061863

SHA-256:
4df3678ad063e606dd14335cd328fe75234d799e59e5ba08b2547d36eea5da95

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 2:07:15 PM UTC  (today)

File size:
6.2 MB (6,544,392 bytes)

Product version:
9.3.3.2

Copyright:
Copyright © 2016 ThreatTrack Security, Inc.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\setup-vipre-antivirus-trial.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/6/2015 8:00:00 PM

Valid to:
8/24/2017 8:00:00 AM

Subject:
CN="Threattrack Security, Inc.", O="Threattrack Security, Inc.", L=CLEARWATER, S=FL, C=US

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
083B5283A9B6FE6464743383083AB153

File PE Metadata
Compilation timestamp:
1/28/2016 4:04:24 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
98304:iP6uf0fy3XJbN223OITZPErfHlLsi11BlV5EIYDlilI+Tzwl4x8x1UGomgkUinze:iP1syHQ11BlVY+Fgev1ktn6

Entry address:
0x1CAEE4

Entry point:
E8, 52, CF, 00, 00, E9, 7F, FE, FF, FF, 3B, 0D, D0, F3, 6A, 00, 75, 02, F3, C3, E9, 6B, 0C, 00, 00, 55, 8B, EC, 56, 8B, 75, 14, 85, F6, 75, 04, 33, C0, EB, 6D, 8B, 45, 08, 85, C0, 75, 13, E8, 59, 88, 00, 00, 6A, 16, 5E, 89, 30, E8, FA, D5, 00, 00, 8B, C6, EB, 53, 57, 8B, 7D, 10, 85, FF, 74, 14, 39, 75, 0C, 72, 0F, 56, 57, 50, E8, B5, 4A, 00, 00, 83, C4, 0C, 33, C0, EB, 36, FF, 75, 0C, 6A, 00, 50, E8, F3, 50, 00, 00, 83, C4, 0C, 85, FF, 75, 09, E8, 18, 88, 00, 00, 6A, 16, EB, 0C, 39, 75, 0C, 73, 13, E8, 0A...
 
[+]

Entropy:
7.1748

Code size:
2.1 MB (2,222,592 bytes)

The file setup-vipre-antivirus-trial.exe has been seen being distributed by the following 9 URLs.

http://visit.digidip.net/visit?pid=660&generated=shortener&url=http://.../?linkid=1403

http://www.vipreantivirus.com/support.aspx

http://go.threattracksecurity.com/?linkid=1403