x14-63453 vista.exe

Microsoft Windows Marketplace

Microsoft Corporation

This is a setup program which is used to install the application. The file has been seen being downloaded from drcdn.blob.core.windows.net and multiple other hosts.
Publisher:
Microsoft Corporation  (signed and verified)

Product:
Microsoft® Windows Marketplace

Description:
Windows Vista Preparation

Version:
3.0709.1505.0

MD5:
0023ce102efe1b5b89ee18cc82b44d28

SHA-1:
111cbbcca3087cee8b35bdf7745e478e3f92c2f5

SHA-256:
dd4f1ea14a3415a4465f81eeac00ce6c787aeba56a751f1e46b87adaa630f97d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
12/26/2024 8:39:58 AM UTC  (today)

File size:
87.7 MB (92,002,320 bytes)

Product version:
3.0709.1505.0

Copyright:
© Microsoft Corporation. All rights reserved.

Trademarks:
Microsoft® is a registered trademark of Microsoft Corporation.

Original file name:
VistaSetupPrep.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\x14-63453 vista.exe

Digital Signature
Authority:
Microsoft Corporation

Valid from:
8/22/2007 7:23:13 PM

Valid to:
2/22/2009 6:33:13 PM

Subject:
CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
610F784D000000000003

File PE Metadata
Compilation timestamp:
3/5/2008 7:32:06 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1572864:yqHw38efEAoD4DFX9cJ+/PCDzWJar9BxrJ3BeCvITGmky7ISR3WHpiQNkaYiZP:rHw3qAoD4DvcI/K2WnpJ3BX4Gly7L3G3

Entry address:
0x2ECF

Entry point:
E8, 18, 03, 00, 00, E9, 2B, FD, FF, FF, CC, CC, CC, CC, CC, 3B, 0D, 00, 70, 00, 01, 75, 02, F3, C3, E9, 98, 03, 00, 00, CC, CC, CC, CC, CC, FF, 25, 78, 11, 00, 01, CC, CC, CC, CC, CC, CC, FF, 25, 74, 11, 00, 01, CC, CC, CC, CC, CC, 6A, 14, 68, 30, 58, 00, 01, E8, 1B, 02, 00, 00, FF, 35, 10, 79, 00, 01, 8B, 35, 20, 11, 00, 01, FF, D6, 59, 89, 45, E4, 83, F8, FF, 75, 0C, FF, 75, 08, FF, 15, 24, 11, 00, 01, 59, EB, 61, 6A, 08, E8, 67, 04, 00, 00, 59, 83, 65, FC, 00, FF, 35, 10, 79, 00, 01, FF, D6, 89, 45, E4...
 
[+]

Entropy:
7.9968  (probably packed)

Code size:
21 KB (21,504 bytes)

The file x14-63453 vista.exe has been seen being distributed by the following 3 URLs.