VC_redist.x64.exe

Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506

Microsoft Corporation

This is a setup program which is used to install the application. The file has been seen being downloaded from mega.nz and multiple other hosts.
Publisher:
Microsoft Corporation  (signed and verified)

Product:
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506

Version:
14.0.23506.0

MD5:
8a005ea9d33d072031dbba928614cb62

SHA-1:
9a19a51d1f40cd5cd5ecb6e4e4f978f18da8212a

SHA-256:
4504cd3bbccdd7efb9ec68261d57a04c2c8d704812c56856f4786ac90f7f00a8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
11/23/2024 5:36:06 PM UTC  (today)

File size:
14.1 MB (14,773,216 bytes)

Product version:
14.0.23506.0

Copyright:
Copyright (c) Microsoft Corporation. All rights reserved.

Original file name:
VC_redist.x64.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\vc_redist.x64.exe

Digital Signature
Authority:
Microsoft Corporation

Valid from:
6/4/2015 12:42:45 PM

Valid to:
9/4/2016 12:42:45 PM

Subject:
CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
330000010A2C79AED7797BA6AC00010000010A

File PE Metadata
Compilation timestamp:
2/13/2015 1:42:32 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:4o94PlpdcdklRRvc5wIsj5MSBP8STr/URFMq6cB27g7gkW1yif2povvg9P3D3V+r:99Glp+dkBSuF2SfUfn6Ab701VfePsJ8C

Entry address:
0x28494

Entry point:
E8, 06, 1F, 00, 00, E9, 89, FE, FF, FF, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 69, 33, C0, 8A, 44, 24, 08, 84, C0, 75, 16, 81, FA, 80, 00, 00, 00, 72, 0E, 83, 3D, 88, 8F, 45, 00, 00, 74, 05, E9, 6E, 1F, 00, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B, C8, C1, E0, 10, 03, C1, 8B, CA, 83, E2, 03, C1, E9, 02, 74, 06, F3, AB, 85, D2, 74, 0A, 88, 07, 83, C7, 01, 83, EA, 01, 75, F6, 8B, 44, 24, 08, 5F...
 
[+]

Entropy:
7.9966  (probably packed)

Code size:
229 KB (234,496 bytes)

The file VC_redist.x64.exe has been seen being distributed by the following 31 URLs.

https://mega.nz/persistent/.../zFsVEbxQ

http://dl.4players.de/ts/client/.../vcredist_x64.exe

http://cdn.par30dl.com/2016/Software/.../Microsoft-Visual-C-Plus-Plus-2015.14.0.23506.0-Redis-x64.exe

blob:FFF41B49-8494-441E-A323-866E914A09A3

http://download.microsoft.com/download/8/5/e/.../vc_redist.x64.exe

http://download1242.mediafire.com/ljusst7zd5kg/.../VC_redist.x64 14023506.exe

http://download32.mediafire.com/47amd2nhuuzg/.../VC_redist.x64 14023506.exe

about:internet

blob:A5E3882F-CAD5-4162-A750-72539E59D802

http://download885.mediafire.com/wddy5rpar4zg/.../VC_redist.x64 14023506.exe

http://download1789.mediafire.com/f42z87k1frhg/.../VC_redist.x64 14023506.exe

http://download817.mediafire.com/n43h9ox2m1cg/.../VC_redist.x64 14023506.exe

blob:946962D0-470C-4FA4-B176-1354837D5814

http://s7617.chomikuj.pl/File.aspx?e=4p13-eyVgxjDFnnBENahpZQ9NbbDuUK00SRvUp3TIXbB62xfQPTfzsBI4pshdjTufu5Xt5CjAqUBMfj0X5p2ASJtZAqregWVIQiKbYa6Ye-t8wJwle3KZJgqAADm0todPENeZsOVFC3D72lgStmUB_hWe3bBI-3FdckaM6Vrjq0&pv=2

http://download769.mediafire.com/9ic3b8eybb2g/.../VC_redist.x64 14023506.exe

http://download1111.mediafire.com/uz244zs5aqqg/.../VC_redist.x64 14023506.exe

http://download606.mediafire.com/3ou66ug923ig/.../VC_redist.x64 14023506.exe

https://mega.nz/temporary/.../FkgAEQbZ

http://download817.mediafire.com/t0jbce2gegbg/.../VC_redist.x64 14023506.exe

chrome-extension://bigefpfhnfcobdlfbedofhhaibnlghod/persistent/.../iEMiiQrS

Latest 30 of 31 download URLs