Setup.exe

Microsoft ActiveSync

Microsoft Corporation

This is a setup and installation application. The file has been seen being downloaded from global-shared-files-l3.softonic.com and multiple other hosts.
Publisher:
Microsoft Corporation  (signed and verified)

Product:
Microsoft ActiveSync

Description:
ActiveSync Setup

Version:
4.2.4876.0

MD5:
ebe37aa29e64f6fd89e77549e3c7ea44

SHA-1:
f4faff26f3f8854cb2105f2d5ca85135b30aa9f1

SHA-256:
82ac002ad0576efe05a9870ade56d8a6ebef71d5e02299fcdfc33bc0dd33245e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
12/24/2024 11:21:30 AM UTC  (today)

File size:
6.9 MB (7,277,360 bytes)

Product version:
4.2.4876

Copyright:
Copyright © 1995-2006 Microsoft Corp. All rights reserved.

Trademarks:
Microsoft® and Windows® are registered trademarks of Microsoft Corporation.

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
Microsoft Corporation

Valid from:
4/4/2006 3:43:46 PM

Valid to:
10/4/2007 3:53:46 PM

Subject:
CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, OU=Copyright (c) 2000 Microsoft Corp., O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
61469ECB000400000065

File PE Metadata
Compilation timestamp:
6/26/2006 5:54:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
196608:XJIgnNwFikacrGRiDCS/G+mpt/mSUySgU1iPyAFn2P347Pif4a2NyEj:NnNwFikacrGRiDCS/G+mpt/45g8uIPA9

Entry address:
0x2CE3

Entry point:
6A, 60, 68, 08, 14, 00, 01, E8, 19, 0D, 00, 00, BF, 94, 00, 00, 00, 8B, C7, E8, 55, 1D, 00, 00, 89, 65, E8, 8B, F4, 89, 3E, 56, FF, 15, 3C, 10, 00, 01, 8B, 4E, 10, 89, 0D, D4, AB, 00, 01, 8B, 46, 04, A3, E0, AB, 00, 01, 8B, 56, 08, 89, 15, E4, AB, 00, 01, 8B, 76, 0C, 81, E6, FF, 7F, 00, 00, 89, 35, D8, AB, 00, 01, 83, F9, 02, 74, 0C, 81, CE, 00, 80, 00, 00, 89, 35, D8, AB, 00, 01, C1, E0, 08, 03, C2, A3, DC, AB, 00, 01, 33, F6, 56, 8B, 3D, 44, 10, 00, 01, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03...
 
[+]

Entropy:
7.9737

Developed / compiled with:
Microsoft Visual C++ v7.0

Code size:
36 KB (36,864 bytes)

The file Setup.exe has been seen being distributed by the following 26 URLs.

http://global-shared-files-l3.softonic.com/f4f/aff/.../file?nvb=20140901153417&nva=20140902033517&token=0ed5a82bbaeca2d1b3726&id_file=50360&channel=WEB&instance=softonic_en&type=PROGRAM&fdh=no&SD_used=0&filename=setup.exe

http://filehippo.com/download/file/.../

http://global-shared-files-l3.softonic.com/f4f/aff/.../file?nvb=20141030180044&nva=20141031060144&token=055dbcf59bf3fe0668431&instance=softonic_en&filename=setup.exe

http://gsf-cf.softonic.com/f4f/aff/.../file?SD_used=0&channel=WEB&fdh=no&id_file=50360&instance=softonic_en&type=PROGRAM&Expires=1476393427&Signature=hxm8RfSbHsZp0KAv~I1ckBIQlPY7c3DDj0Ejx115Jj0avUwDsWkK6UVzLxvlHjVMivlbhW38WHCELUKND1YP4R5aczKjX8P1umQDjkCjRgZIjDBhdOt4HoDrRlwK1R8t23Eu7fO8XDWzmx1xTWHptmAQpDcWubx2LN7jN5BVH2o_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setup.exe

http://gsf-cf.softonic.com/f4f/aff/.../file?SD_used=0&channel=WEB&fdh=no&id_file=28411&instance=softonic_en&type=PROGRAM&Expires=1447957753&Signature=XWlzpD48SIktOhVu2Lq7FC7UXtqYe51jJGwsxDMzAHFgu5PqPJGbqMOyek7JKyaa1kWc1kPWN2KoHe2vQ~uc2OvynuF9VFQc14rFn0Wi7kBk8cSJsQjwqzmDLDGFYTyq0sXjdSYDC~xf3sL-M8JOUtM6dcxZQ-R7j3mHYVcHtaw_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setup.exe

http://global-shared-files-l3.softonic.com/f4f/aff/.../file?nvb=20140410230146&nva=20140411110246&token=0909a0743abdd1f5ee23e&id_file=28411&channel=WEB&instance=softonic_fr&type=PROGRAM&fdh=no&SD_used=0&filename=setup.exe

http://emitsub.blob.core.windows.net/.../Setup.exe

http://filehippo.com/pl/download/file/.../

https://activesync.en.softonic.com/pocketpc/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAO2akPNU/1lzrgBrqLGzB5yvOLVTx1NF6fZj1Vy9YO/PiI6F2zthIw1kyOfPtvfeBTT6K27EwylQHfJQdRlW2EXZuyx4VdjS1 QZVkAu7rzqn4AN3SmugIkzsQRriMUM85U2T1206dy v3/.../dmTLPkDLw==

http://gsf-cf.softonic.com/f4f/aff/.../file?SD_used=0&channel=WEB&fdh=no&id_file=50360&instance=softonic_pl&type=PROGRAM&Expires=1477280637&Signature=daIN~vd2LBKc4oxv5DocrqSNpzluH0u-0k9ieJsu85fGSW2SzAvIHAKlzLgDDH3L38bdxO~8iyFrz2tsXgj8MHeWZ20BQccUMCwiaxyxqYyoqJX20wbpkoaX8m-ZJ4tLtgUHnH--nmvDwTehdQkAkIo2eOpdP-ZxNUmoHaRkScY_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setup.exe

http://gsf-cf.softonic.com/f4f/aff/.../file?SD_used=0&channel=WEB&fdh=no&id_file=28411&instance=softonic_en&type=PROGRAM&Expires=1426408744&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=TBKJmkLFU6GNxWPG3aRSApdHDX9ccndKbFL95pw~nb5zsopLBrHa1AJbU8qJxiHjKLs3HV6ieBRXMZFTPwgvqa0AYsPwOq4xPIGrZkM5Yp785P72cIbG6Pl~hr8xW3E4soiDLk1rMuRvhAz48wDZZhn5~7c1EgtCiDEfVs4HzT8_&filename=setup.exe

http://gsf-cf.softonic.com/f4f/aff/.../file?SD_used=0&channel=WEB&fdh=no&id_file=50360&instance=softonic_fr&type=PROGRAM&Expires=1470772896&Signature=hW6qKKs6VXssCwePxiFgMqr6ynPogDtAyIhKr~72Q7tzTQK0XA5SyaIrLx3co-yVI3OeMnB-DYck92gRq35yW~cQ3i-zeeG4DyLF7V7bxVF5k1MfiXep6OYf3ZyV2ME3qMnVXTLH9x8uJNzBVjSM0xjwXynVxaA1~Vg5I4wbUCo_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setup.exe

http://s10010.chomikuj.pl/File.aspx?e=algWWqT2plgHO017Y8B_vxzP2eZ6aZAbTgCm95FT9o7VBMiKRqvAydCTJABWcHmTgnSohpx7sx0VTrcGkAjxvvzHc_3w5IqSC-LvEANRE532mfsNA685k8GwpXqZyYk7U1hYt-yJAuJqIVdGSHp8ng&pv=2