20060117163925093_easystudio.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
MD5:
b98c2a7f43fe4f07f29f453d60873682

SHA-1:
e0789e1a3ce3f0c23b4c48599c62538588cacf90

SHA-256:
097fbc18f9d52b4cbbbc5894de26547377f000695857242bed26493abf8ecb05

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 10:04:15 PM UTC  (today)

File size:
61.3 MB (64,288,776 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
8/16/2004 10:36:01 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.0

CTPH (ssdeep):
1572864:hv8/ZPzT9G1DU1JJey4DpTpiw+3239KFkglg/Oi23HQ0tdC3znt3I7rgZf55nF:hvaPzJuDSJJey4ziw+GNKFkXb231at33

Entry address:
0x4041

Entry point:
53, FF, 15, 58, 70, 40, 00, B3, 22, 38, 18, 74, 03, 80, C3, FE, 40, 33, D2, 8A, 08, 3A, CA, 74, 10, 3A, CB, 74, 07, 40, 8A, 08, 3A, CA, 75, F5, 38, 10, 74, 01, 40, 52, 50, 52, 52, FF, 15, 5C, 70, 40, 00, 50, E8, 15, FB, FF, FF, 50, FF, 15, 8C, 70, 40, 00, 5B, 55, 8B, EC, 51, A1, 5C, 9E, 40, 00, 83, 0D, C8, A4, 40, 00, FF, 56, 33, F6, 39, 35, 44, 9D, 40, 00, 89, 35, 4C, 9E, 40, 00, 89, 35, 28, 9E, 40, 00, A3, 58, 9E, 40, 00, 75, 05, E8, FA, E2, FF, FF, 39, 35, 8E, 9E, 40, 00, 76, 66, 0F, B7, 05, 84, 9E, 40...
 
[+]

Entropy:
7.9997

Packer / compiler:
WinZip Self-Extractor 2.2 personal edition

Code size:
24 KB (24,576 bytes)

The file 20060117163925093_easystudio.exe has been seen being distributed by the following 13 URLs.

http://gsf-cf.softonic.com/e07/89e/.../file?SD_used=0&channel=WEB&fdh=no&id_file=43205&instance=softonic_es&type=PROGRAM&Expires=1439264368&Signature=e8OwugN8c06bV5iDaA60--qDcUOqp9p521sm3ofUeG5LtkC6gul-OsFxRTnNMa1EPYqVgdT9bw2RIuyvGb5kjilta8SqdR4c-JuHK-SR3l3ybIme23V1uchE6OEswnUxPBeSwla7vBoXQVIde5JlThjsC937xU4qMzhl2WuwCZ4_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=20060117163925093_EasyStudio.exe

http://samsung-easystudio.softonic.com/.../trmsvRChbxdrflJq3ZIylWstzbmqoumT5v1kRthEip3koCdfXkJyv gAnkTE1z2j nXyDgJOVsm7oMqilrsKmv 3HulO6F42j qqNWJw2wDh8HfkLBYENDz2BQB0SRouGCzmIs9vtZhCnPslNg9nn3GvaXzNeHii4HiAXAQ6oITJNLSE0GXz58 55d1w2bgaVw==

http://gsf-cf.softonic.com/e07/89e/.../file?SD_used=0&channel=WEB&fdh=no&id_file=43205&instance=softonic_es&type=PROGRAM&Expires=1452997678&Signature=dXMdlONO72rM~fKO7DY6UL81OUo4zsjTcdxtRGHmzIAqAzTA1ZkR9ytt8S0zqIxUpygJu-thQe5xY8oHL~DwaFQktYJziEJfQUjm0TH75BEJZxxGuiAPzRHuMXkdA3VGAx43TTf6pgVxzM73T9i9SFeoQs08iGz5MD42ZqyfUfY_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=20060117163925093_EasyStudio.exe

http://samsung-easystudio.en.softonic.com/java/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAPgo8zx3t0l4C MWzKq6o2S08DKEvjtGkh9dqMoZPa1SR0CogPOfqptAWgEzchYwnPr8dYsP1oqXxy9KbcPUa/ju8TNDq64s31BrJLtMn9u1NrUTvCnmFYpq8prrjRhCsDSXDnzqROQ3rubXgUwi3D /.../LX94ctAgQ==

Scan 20060117163925093_easystudio.exe - Powered by Reason Core Security