snippy.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
MD5:
0667a24d10f8d9be101a37d7120e19d2

SHA-1:
f6508cf7c8ab3f1155a6fde8c4db753b8494b1ba

SHA-256:
0a072161ef5db25bb2570403914913ab8b0f36f6fab65b4ab2ecc3ab3dbaa410

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 4:15:31 PM UTC  (today)

File size:
88 KB (90,112 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
7/10/2005 9:40:34 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:CWhcMdI3271PprPH1KhNVmZ/i7UpUrR/xC7oabEG4:CWr716xwoUJ7oaj4

Entry address:
0x4965

Entry point:
6A, 60, 68, F8, 12, 41, 00, E8, 07, 45, 00, 00, 83, 65, FC, 00, 8D, 45, 90, 50, FF, 15, 54, F0, 40, 00, 83, 4D, FC, FF, BF, 94, 00, 00, 00, 57, 6A, 00, 8B, 1D, 50, F0, 40, 00, FF, D3, 50, FF, 15, 44, F0, 40, 00, 8B, F0, 85, F6, 75, 0D, 6A, 12, E8, 59, FF, FF, FF, 59, E9, 8E, 01, 00, 00, 89, 3E, 56, FF, 15, 38, F0, 40, 00, 56, 6A, 00, 85, C0, 75, 0E, FF, D3, 50, FF, 15, 48, F0, 40, 00, E9, 70, 01, 00, 00, 8B, 46, 10, 89, 45, E0, 8B, 46, 04, 89, 45, DC, 8B, 46, 08, 89, 45, D8, 8B, 7E, 0C, 81, E7, FF, 7F, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
56 KB (57,344 bytes)

The file snippy.exe has been seen being distributed by the following 6 URLs.

http://gsf-cf.softonic.com/f65/08c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=48704&instance=softonic_es&type=PROGRAM&Expires=1477984592&Signature=aHojFzCHU0xH2KhA3GSTaZqWHWePSmNp4OozdoT8QMDq9vJrxpVsNukFJAhPjfxtt7PDTH7XHWhEE9kWYGfUNaterk12DfGwWr679fBZqI0wsW1q4hY1DpVyWEda8RQ97a1FxSJKghA-Uofv9Ho5-fFi7~k1kR0yBmcgt39NOXg_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=Snippy.exe

http://gsf-cf.softonic.com/f65/08c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=48704&instance=softonic_es&type=PROGRAM&Expires=1464787494&Signature=dabNptka2QoM63DaYjHiVz33R6T9TXKKUicfpkOQr3o20aHaXc9Ei9o26n4teU7zMjhHQmhfamX~047C6Jfpvk-HmBIU2AX4wKRT0yc8DErnqgrIan9Bt1mJ3JSlWYQgDPxaUywyOYZRVlDGfPKDUqF2PrXmn7jUf6WaNfM11CQ_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=Snippy.exe

http://gsf-cf.softonic.com/f65/08c/.../file?SD_used=0&channel=WEB&fdh=no&id_file=48704&instance=softonic_es&type=PROGRAM&Expires=1464612753&Signature=b0QKr4rW-wmM6RhTQMj~zyTI1FhmVGwr6kirHjZI79v2USYY0fI6hQvO-z1kyY6WAzABvRBxnyBUyPoum~Xe-ymF~OIbFfB6LFCGboBeAE9d0ZtxpQIQQHzE57TmpUImo-TlPVo1Cd0b1DPd5493eTHN5ZU5SwSeqppc3D7gzR4_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=Snippy.exe

Scan snippy.exe - Powered by Reason Core Security