softonicdownloader_for_sketchup-pro-2014.exe

The application softonicdownloader_for_sketchup-pro-2014.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup program which is used to install the application. The file has been seen being downloaded from sketchup-pro.en.softonic.com.
MD5:
da3964a93c8b32556f5aae8edd5338e0

SHA-1:
7290c8d70438d06b9cbce4f3bfab094e3e658f00

SHA-256:
6129eec5fa23fe140b7c8b4db06b40d31a29ff784c3572c2cdabede1ac717bd2

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/15/2024 8:51:36 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Softonic.Bundler.Meta (L)
16.3.18.16

File size:
355.2 KB (363,764 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\softonicdownloader_for_sketchup-pro-2014.exe

File PE Metadata
Compilation timestamp:
11/18/2014 4:18:58 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:bYjeorPUGahbo8OyzRZNbumfjbOXzkcyfC5NUl7UhiCTy+oy7hup+/0gEkebHKsz:ujJSE2l3rfXIkcya5NU36y+vhIq0gEk+

Entry address:
0xFA0A0

Entry point:
00, 00, A7, DC, FD, E2, F3, FE, CE, EB, FE, 86, CE, FD, 54, BA, FB, 36, 95, D2, 00, 00, 00, F7, BA, 66, F8, BE, 6F, C8, 92, 46, A0, 72, 33, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 5F, BE, FC, 90, D2, FD, B5, D9, F1, CE, D5, D9, 97, C5, E2, 5F, BE, FC, 42, B3, FB, A1, 88, 5B, E3, 9D, 3B, F6, B2, 52, C8, 92, 46, B8, 7F, 2F, B0, 7C, 34, 00, 00, 00, 00, 00, 00, 00, 00, 00, 49, B6, FB, 64, C0, FC, AD, C6, D6, B4, 95, 6B, D0, CD, C8, 62, C0, FC, 50, B8, FB, 91, 86, 61, E3, 9D, 3B, F6, B2, 52, C8, 92, 46...
 
[+]

Entropy:
7.9599  (probably packed)

Code size:
320 KB (327,680 bytes)

The file softonicdownloader_for_sketchup-pro-2014.exe has been seen being distributed by the following URL.

Remove softonicdownloader_for_sketchup-pro-2014.exe - Powered by Reason Core Security