xyaz-installer.exe

逍遥安卓

上海迈微软件科技有限公司

The program is a setup application that uses the Setup Factory installer. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
迈微科技  (signed by 上海迈微软件科技有限公司)

Product:
逍遥安卓

Description:
逍遥安卓在线安装包

Version:
0.0.0.0

MD5:
4c70f36fcaeac5adbc65c095319b88d6

SHA-1:
633f25a218e36d9d01fd76844e05a9069f30b137

SHA-256:
7f3be40e43fcd1b9000e8dbe4351a456994a7ca276568724de82e8ec99f5fd2e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/30/2024 8:00:04 AM UTC  (today)

File size:
3.4 MB (3,555,352 bytes)

Product version:
0.0.0.0

Original file name:
suf_launch.exe

File type:
Executable application (Win32 EXE)

Installer:
Setup Factory

Language:
English (United States)

Common path:
C:\users\{user}\downloads\xyaz-installer.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/27/2015 9:00:00 PM

Valid to:
3/28/2017 8:59:59 PM

Subject:
CN=上海迈微软件科技有限公司, O=上海迈微软件科技有限公司, L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5528D5543296BFE427D43B8DDC0A20C7

File PE Metadata
Compilation timestamp:
6/14/2012 1:16:10 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:GLN26FOnzGn6LJvqkwnpC+mWd6uIccAy3uj+4GZcu1R5wRBZaudTd:GL06FOznLo0+Dd6uxcD3421R5wRemZ

Entry address:
0x29E1

Entry point:
E8, A6, 1D, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 56, 57, 33, F6, BF, C8, AB, 40, 00, 83, 3C, F5, 54, A0, 40, 00, 01, 75, 1D, 8D, 04, F5, 50, A0, 40, 00, 89, 38, 68, A0, 0F, 00, 00, FF, 30, 83, C7, 18, FF, 15, C0, 70, 40, 00, 85, C0, 74, 0C, 46, 83, FE, 24, 7C, D3, 33, C0, 40, 5F, 5E, C3, 83, 24, F5, 50, A0, 40, 00, 00, 33, C0, EB, F1, 8B, FF, 53, 8B, 1D, C4, 70, 40, 00, 56, BE, 50, A0, 40, 00, 57, 8B, 3E, 85, FF, 74, 13, 83, 7E, 04, 01, 74, 0D, 57, FF, D3, 57, E8, 18, FD, FF, FF, 83, 26, 00, 59, 83, C6, 08...
 
[+]

Code size:
22 KB (22,528 bytes)

The file xyaz-installer.exe has been seen being distributed by the following 21 URLs.

https://dw.uptodown.com/dwn/pJpxUcoAPHFpgkgZ5QemkV-3-Qps5jHvc3tEjCnKt_R5obkQ6qI7TF7MMNIPDrKzus88RqrRluJb2n2lYCJCKrPEwPZahDVoi5dyDV_JKMlSI911JEEh9zPKurQfC55P/4W27djTwD3fKbVsbLLiOMb66fZq361BwhWjtsbIiKmNxp5IYnD5MdFFC83LWHlOTzKVtJuezPknG1-aP4yTZs2hBmdXhl-KWGgD394C956XjyiWjWPQTbkQh9L8RoOUm/0AjFfu4-UqUZ_lHvpiu_rObANsYTaHBPC8YNMu_AHiZuSiOtI52sGHbPWxQ3qipseWRt3oHh6iAn_wiNU7WRDcs5Ul-OAAkCtE44faU1aE8mnfOSFu4uVlNPYY37wV5W/.../

https://dw.uptodown.com/dwn/fMsTSqMfSYz0uau7YLUPASr6L4lUiJKDxOD6V-TmCphkSV6RzDxzAT-_wxh2HGKDdYHcssyVJAw3soqbD46FeEDtXiLmX7soogIsI6IK2PsjBEOIUOrM8gxG5F3jg41g/TEt5OnNsv0x_NjqRhMWtU2xtHViirn8ac6sZSCJnGspYD__jWo48E_Kh0PS_nIAy3fxy4wtqrrQH871FErVde8iwBqG9ULnEwjxdvD3udjXpylhgshq69MZgNpelt_za/s2lhD9UspXnDEVJ9jOrbSmh-obhD-NLzlh8je4bGpot0lfJntYhEwm8zVs8u-BTDlbk2SCSVMcW2YOsvBVS9EX_AaBJ1yig5RPgf_K_yPhYrQ9bKkYLDqDrOsjOUcIp7/.../

https://dw.uptodown.com/dwn/nRjTehOVDWohTrPDXGrdQEVYWSI3Otnp7OmVE2pz6PpMkjlI-ksDVG5V-uxvxAJMoQ5Sv5S7Uqu8B2zco7K_SxkNT2e2wlNkEcHXsxKq-Zl9-UD6yTGpBPda4nVH5M9t/HVLniM29g0H0U0KU9NFpqVzTafukvADUXGy-QBovJB-w0ok8NP0NZOKk-6yHdWjBOllBbM1Pj__PlkEZsAq8J_PaQP3PAfyFO9f2AS8WAqRjhF-3YV8x496B8MiebwvI/7qSFwVL4nXHnCszmP3VUqhzBVrlw1xUr9RSph-k1V6ndetfhTxCpksr_3u6WJFE-vRHpIEhrzE3vBMoK3hKr3VISdWS--hQr95gK2Est6icHlLl6B8Bt2fPVSSgk8EiI/.../

https://dw.uptodown.com/dwn/mF1d9jrRkQmdVwp4rq-36LNWZ1IbVlM2JSmsp-KETTRw_5qP6BEdZUES6LNfb7qDfk0-R5v_z0SAKVf281qGzL1ynE2t1wnjK7ELZJGjQg0X3dy5vZyUlQqX0K-z00Zq/i1SVYGy93li6Jw-BNeMZYhB_3sgpkXnT291rYTcu-RMKSXoRjY6x4USuQ9RqSridW2vnrw9wzK5ccs4owYyV2c4P5tkZXJhiXiN6WpTqzRtADf4VUpvJwM6AJcDheRPI/dZBlxYE2A_9zQ2mt2RLa6-dy4c4kVbqf5YMoTs5uNPAN21oRXv44nJ4wRx4evrFcYgntoo7g5no8WDcUSfCH6Uh4zzkqd5a8t_7MCdgOrIaPHqA4tUu07N1MODmxIrjs/.../

https://dw.uptodown.com/dwn/lICcmqfelfNP_v9pVbxJXlpw1-WKLcc6CX2habadg2BkPIN8W3eEcZhdk9vo-EQ01cUlw2OPkT2YZzFNWtPtkwUI_49f9xV_J5BAtJKCI4Qg-UUIS3DoE1d3AnShdD4f/7ZU4K0vzYuLFxcRAECkwnApuVueid7oGWTiWvO54vjNnN4rMrkNnqUgmYQZGKzpYsYvHSvNuj-5wCOj8GwCQkGM3Gh4MnvOUG4-aM6Oogw-YbHs4oVuXBPVm2KVEM9fK/5k0HYXLARdOhY8AQwPKPnC-1czvzACJmM91M5DY05WVjzlm26T-pyalUJ1goy45luAsEl3cj-xzAugpOsrT-4HZDWTAnWjsxUhxg8LR1gLHW1GTc8660I1mK32ADKXrQ/.../

http://www.xyaz.cn/download.php?file_name=XYAZ-Installer&from=home2

https://dw.uptodown.com/dwn/4jB-9XhS1NT5bZx2I6boBDt3pzCgETA__n7z_vhPAxasMkpy5zPYelyalsShOWUtld3WE4IyYcwvMs9Ha6PVMKvh-nHfbj3ZONpOqJGCEFN-2E1Id7WDNNBX3u3c4TpA/MkrjhH2tAtFO0zsVbcttEjdAPeaCTzNHCs_k857C5PRRz9PxsM2VgC8DOIj22yPV5wdV8-cniAZmjz888KGnrnNC_kd1A7g79gtBkfFdxJzwfiKHX9eQWlxUkdCmDZu5/terYd_KSgPnMCrhRgPKwdd5HLLeOix5ZvRC8FSm8RWsJbkgoD16nNljkb_S0NIJ7eh8tPqDbwLCHrkR20fo44133DrEPbmtdBzGlWf9zjDcS6qBGQqc4N6auN4ZfSiFV/.../

https://trashbox.ru/files20/.../xyaz-installer_1.exe

https://dw.uptodown.com/dwn/JqvsEtXEUyi7CACpseGpax31LBYrgSRWXMRjJlciSx5TXdkPnVnDHV8UhGXO15CM56f4VbPGTYMrAlXQ-gk5m_SY5kfbHlxMU1X4_aT3gZHhC8E0QrIeSd1EMJg7NgKZ/hWfU73mRwrXLvKZcdkOxYsqFwFqcs8CbP8ii8i-_6jgXQg071Pykiz8nx5vAjfl62GjTRsGy0FqXOiYYAJyIJy4g2_62r8oJ0NDgcEXVHyEUqh0UYk6Mb_Q_q2s5AZk6/.../

temp:XYAZ-Installer.exe

Scan xyaz-installer.exe - Powered by Reason Core Security