softphone.exe

Easy Telefoni

Telepo AB

This is a self-extracting archive and installer. The file has been seen being downloaded from bcs.easytelefoni.se.
Publisher:
Telepo AB  (signed and verified)

Product:
Easy Telefoni

Description:
Easy Telefoni Installation Package

Version:
4.3.2.1720

MD5:
f39a4fcf5f058d5a0efb956ffc7f9cab

SHA-1:
620fd99bd6a9a7fe3b90c75de642e0239ce78b00

SHA-256:
9a8dcd7d81c69d824dc3c2453c72184d365bac913454fb630a72b0c24d998fe4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 4:54:50 PM UTC  (today)

File size:
18.9 MB (19,838,640 bytes)

Product version:
4.3.2.1720

Copyright:
Copyright (c) 2006-2014 Telepo AB

File type:
Executable application (Win32 EXE)

Language:
Swedish (Sweden)

Common path:
C:\users\{user}\downloads\softphone.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
10/4/2013 4:50:41 PM

Valid to:
10/16/2014 9:45:38 AM

Subject:
CN=Telepo AB, O=Telepo AB, L=Stockholm, S=Stockholm, C=SE

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2B8E9FF8956354

File PE Metadata
Compilation timestamp:
9/11/2014 10:13:52 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.50

CTPH (ssdeep):
393216:Na2irbdephWMC+lF5YsmCabEaRmsG23Bx7tGt2OD3a:Na2WbEphPPFmsm3bEmmr0D

Entry address:
0xA170

Entry point:
55, 89, E5, 6A, FF, 68, B4, 08, 41, 00, 68, 68, B8, 40, 00, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 83, EC, 50, 53, 56, 57, 89, 65, E8, 68, 00, 00, 00, 02, E8, 40, 2F, 00, 00, 59, A3, A4, 20, 41, 00, E8, 35, 1A, 00, 00, 85, C0, 75, 0D, 6A, 01, E8, 6A, 1C, 00, 00, 59, E9, C2, 00, 00, 00, C7, 45, FC, 00, 00, 00, 00, E8, 68, 1C, 00, 00, E8, 23, 1D, 00, 00, E8, 6E, 1D, 00, 00, E8, 79, 21, 00, 00, E8, 14, 22, 00, 00, BB, 0C, 16, 41, 00, 81, FB, 0C, 16, 41, 00, 73, 0D, FF, 13, 83, C3, 04, 81, FB...
 
[+]

Code size:
60 KB (61,440 bytes)

The file softphone.exe has been seen being distributed by the following URL.

Scan softphone.exe - Powered by Reason Core Security