setupclonecd5320.exe

SlySoft, Inc.

This is a setup program which is used to install the application. The file has been seen being downloaded from filehippo.com and multiple other hosts.
Publisher:
SlySoft, Inc.  (signed and verified)

MD5:
935646152b4a65d0fc803c8f5f5bde78

SHA-1:
2dc29f5370fd221e8c892886ba288028effd1dc0

SHA-256:
8ad6d3c6caee1a97592dbf1e51dd93435f54a6e5ce53c6848e31fc9b096772ee

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/18/2024 9:31:02 AM UTC  (today)

File size:
2.7 MB (2,836,520 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\setupclonecd5320.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
11/7/2013 4:54:34 PM

Valid to:
1/2/2017 4:20:37 PM

Subject:
CN="SlySoft, Inc.", O="SlySoft, Inc.", C=AG

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112174F37DA8960291A1FAB280BE7BAC197F

File PE Metadata
Compilation timestamp:
5/13/2015 11:16:44 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
49152:IrfRkb+ldiQtm+U7pUr33o7HF1v3HASbUhvg4fTO8avJDwv:6fRkb+ldB4Wr33oswuvg4LI1wv

Entry address:
0x264E0

Entry point:
60, BE, 00, 10, 42, 00, 8D, BE, 00, 00, FE, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75...
 
[+]

Entropy:
7.9905

Packer / compiler:
UPX 2.90LZMA

Code size:
24 KB (24,576 bytes)

The file setupclonecd5320.exe has been seen being distributed by the following 30 URLs.

http://filehippo.com/download/file/.../

http://www.signstowerranch.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

http://filehippo.com/it/download/file/.../

http://61.222.3.60/acf9b2585658c0c8fc1e937c4ff8df25/softking/soft/en/.../SetupCloneCD5320.exe

http://filehippo.com/download/file/.../

http://filehippo.com/de/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/de/download/file/.../

http://filehippo.com/it/download/file/.../

http://ec.ccm2.net/www.commentcamarche.net/download/.../SetupCloneCD5320.exe

http://61.222.3.60/625516eae9b1baaa263568d16e613cea/softking/soft/en/.../SetupCloneCD5320.exe

http://61.222.3.63/9868f19d7547e06c3d545aff24fe5772/softking/soft/en/.../SetupCloneCD5320.exe

http://61.222.3.60/9423d4712f5137d6bb93dbe90377920e/softking/soft/en/.../SetupCloneCD5320.exe

Latest 30 of 30 download URLs

Scan setupclonecd5320.exe - Powered by Reason Core Security