setupvcd5500.exe

Elaborate Bytes AG

This is a setup program which is used to install the application. The file has been seen being downloaded from www.getsurl.com and multiple other hosts.
Publisher:
Elaborate Bytes AG  (signed and verified)

MD5:
6df26d637c0c5fefcd248ee130837c2b

SHA-1:
1c989a62b2437245487c2d0f314dd38abc33a5e1

SHA-256:
cd56643dc3a657ad83b8edbe9f607a572643db0d7ea7376bb86b569c38f82cee

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/23/2024 4:46:38 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Detection.Undefined
7.0.302.0

File size:
1.6 MB (1,710,680 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\setupvcd5500.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/29/2015 12:49:31 PM

Valid to:
12/27/2018 11:09:02 AM

Subject:
CN=Elaborate Bytes AG, O=Elaborate Bytes AG, L=Cham, S=Zug, C=CH

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11211328B7810C4738934044B50103E130E8

File PE Metadata
Compilation timestamp:
1/14/2016 3:58:55 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
24576:uljES7IX6kiGYTDZNjN6xs1WeNOeuFB9X6gbu185BxbiFAfn+gxohTQtMmp4:ulkLYTDZPNy6gKRS+VhTyp4

Entry address:
0x9747

Entry point:
6A, 60, 68, 90, FA, 40, 00, E8, B9, 10, 00, 00, BF, 94, 00, 00, 00, 8B, C7, E8, 91, FE, FF, FF, 89, 65, E8, 8B, F4, 89, 3E, 56, FF, 15, 14, F1, 40, 00, 8B, 4E, 10, 89, 0D, A8, 49, 42, 00, 8B, 46, 04, A3, B4, 49, 42, 00, 8B, 56, 08, 89, 15, B8, 49, 42, 00, 8B, 76, 0C, 81, E6, FF, 7F, 00, 00, 89, 35, AC, 49, 42, 00, 83, F9, 02, 74, 0C, 81, CE, 00, 80, 00, 00, 89, 35, AC, 49, 42, 00, C1, E0, 08, 03, C2, A3, B0, 49, 42, 00, 33, F6, 56, 8B, 3D, 08, F0, 40, 00, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03...
 
[+]

Entropy:
7.9809

Developed / compiled with:
Microsoft Visual C++ v7.0

Code size:
52.5 KB (53,760 bytes)

The file setupvcd5500.exe has been seen being distributed by the following 50 URLs.

https://www.getsurl.com/o?i=308015

http://lb.cdn.m6web.fr/d/c/a/a91102ca84d23a122e4d63dcd989877a/580c92ff/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/61cf53effaaeac1bbe429405127a9251/58514c85/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/8099b2a9b8ba9e0b1aa8de243a6434d4/58b0e8d2/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/928180b12ba531563dd15142c9932882/589b573d/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://filehippo.com/download/file/.../

http://lb.cdn.m6web.fr/d/c/a/6c9c092c37c0f5c2f483262a32a1f6e7/580e07ee/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://filehippo.com/download/file/.../

http://lb.cdn.m6web.fr/d/c/a/0a4d735b9a50e25dde9ce911ed34cad2/587a52ff/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/5eaa0610661efe7085064e3090ecc3ff/587cdebc/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/899bb83ce2c9d28e0bf8a0323d196b4e/5854fc86/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/0ce09124e2ef813d4664d19261d55c64/585730d3/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/405d77f764eba67b5e2edbf89deff329/589de8bd/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/81adac2e24eceb05f352e47c3bcb7bda/584573f8/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

https://download.heise.de/files/AsMK2b8yR-iwChxS6e9Zlw/.../setupvcd5500.exe

https://download.heise.de/software/9d0cf91a3b25c2e2ac5519758d403480/57d184e7/.../setupvcd5500.exe

http://lb.cdn.m6web.fr/d/c/a/331396d6d829ded2c01cce439611b621/58618131/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://dw.html.it/index.php?softname=SetupVirtualCloneDrive_5.5.0.0.exe&code=1482408933&q=OTY0MTZ8dmlydHVhbC1jbG9uZWRyaXZlLTY=

http://lb.cdn.m6web.fr/d/c/a/c8448c9312ac28fa73a0516c00fbf0ea/58a47bcc/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/2e7fb03f440a66c67af3039b6236ce90/58b4b87e/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://filehippo.com/es/download/file/.../

http://lb.cdn.m6web.fr/d/c/a/bcd5fb32bc7a412dc83778b8c3b1e429/586ba076/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/e85696df1f8e9b89d5df0a19a0722a21/578efa6d/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://filehippo.com/download/file/.../

http://www.filehorse.com/download/file/.../

http://lb.cdn.m6web.fr/d/c/a/16bd7338f5ea004fa8b23a8430170e38/5890ed3d/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/dc601e55d841f3b3ac04e10be0d5fb1a/5731f028/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

https://download.heise.de/software/a02e7fd8b38b3a72f80058deb743c8f2/585538cb/.../setupvcd5500.exe

http://lb.cdn.m6web.fr/d/c/a/ba5ab4855743ad8e95389f5f1e524202/5894f028/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

http://lb.cdn.m6web.fr/d/c/a/ba866ce4be58fc83358875e1ef9cfbb8/585ed09e/soft/.../virtual-clonedrive_5-5-0-0_fr_79406.exe

Latest 30 of 483 download URLs

Scan setupvcd5500.exe - Powered by Reason Core Security