vipre-av-3096-trial.exe

VIPRE Antivirus and Internet Security

GFI Software (Florida) Inc.

This is a self-extracting archive and installer. The file has been seen being downloaded from dl.gfi.com and multiple other hosts.
Publisher:
GFI Software  (signed by GFI Software (Florida) Inc.)

Product:
VIPRE Antivirus and Internet Security

Description:
VIPRE Setup

Version:
6.0.1488.0

MD5:
46a2d1b54867c7c57613ac9802129af2

SHA-1:
7d5a98015a7ee7dfea82c4f8a9cd9203f8eafeee

SHA-256:
af83e1e7a8f9f49f6b55b13bec0863bac8f7d9ee30c924751a25f0ae6fced428

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 11:17:28 PM UTC  (a few moments ago)

File size:
8 MB (8,433,544 bytes)

Product version:
6.0.1488

Copyright:
Copyright (c) 2012 GFI Software. All rights reserved.

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\vipre-av-3096-trial.exe

Digital Signature
Subject:
CN=GFI Software (Florida) Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=GFI Software (Florida) Inc., L=Clearwater, S=Florida, C=US

Serial number:
54323DBF4B8E5CFDD565697A3B7EBDDA

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
196608:oL3HMxfS/UXHZ4QmWki99keAAEuq/n148Tlyo:oTmVaQQijAfzIo

Entry point:
E8, A1, AF, 00, 00, E9, 89, FE, FF, FF, 3B, 0D, B0, D6, 65, 00, 75, 02, F3, C3, E9, 28, B0, 00, 00, 8B, FF, 55, 8B, EC, 56, 8B, 75, 14, 85, F6, 75, 04, 33, C0, EB, 61, 83, 7D, 08, 00, 75, 13, E8, B9, 5B, 00, 00, 6A, 16, 5E, 89, 30, E8, 92, B2, 00, 00, 8B, C6, EB, 48, 83, 7D, 10, 00, 74, 16, 39, 75, 0C, 72, 11, 56, FF, 75, 10, FF, 75, 08, E8, D4, 54, 00, 00, 83, C4, 0C, EB, C7, FF, 75, 0C, 6A, 00, FF, 75, 08, E8, 62, 49, 00, 00, 83, C4, 0C, 83, 7D, 10, 00, 74, BB, 39, 75, 0C, 73, 0E, E8, 6F, 5B, 00, 00, 6A...
 
[+]

Entropy:
7.5242

The file vipre-av-3096-trial.exe has been seen being distributed by the following 4 URLs.

Scan vipre-av-3096-trial.exe - Powered by Reason Core Security