56881259_stp.exe

Firefox

Mozilla Corporation

This is a setup program which is used to install the application. This is installed with Mozilla Firefox 23.0 (x86 en-US). The file has been seen being downloaded from dl2.filehippo.com and multiple other hosts.
Publisher:
Mozilla  (signed by Mozilla Corporation)

Product:
Firefox

Version:
4.42

MD5:
7c75731dbdbc400c41f20f9a28a2fd83

SHA-1:
d55d22b68844d980f252100fd5f8def663cbf1ee

SHA-256:
5c9407f7709ae523807f8b2abfdd19a48e959f34eefb3f6b30108e5f102e7729

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 7:04:55 PM UTC  (today)

File size:
21.4 MB (22,404,568 bytes)

Product version:
4.42

Copyright:
Mozilla

Original file name:
7zS.sfx.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\56881259_stp.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
10/17/2012 9:00:00 PM

Valid to:
10/18/2013 8:59:59 PM

Subject:
CN=Mozilla Corporation, OU=Release Engineering, O=Mozilla Corporation, L=Mountain View, S=California, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
3DA9386C2076F738EE246BB8E313A4D4

File PE Metadata
Compilation timestamp:
6/14/2013 1:50:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
393216:ryOAI1vaELOM6xoY1zhFBczI//cZ0M0Zeuv9XSLeODQB+apN3:ryYxa9bxo0Bcza/cZ0Moe49PO0JD3

Entry address:
0x21DE0

Entry point:
60, BE, 00, 80, 41, 00, 8D, BE, 00, 90, FE, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75...
 
[+]

Packer / compiler:
UPX 2.90LZMA]

Code size:
40 KB (40,960 bytes)

The file 56881259_stp.exe has been discovered within the following program.

Publisher's description - “Bringing together all kinds of awesomeness to make browsing better for you. Get to your favorite sites quickly – even if you don’t remember the URLs.”
www.mozilla.com/en-US
6% remove it
 
Powered by Should I Remove It?

The file 56881259_stp.exe has been seen being distributed by the following 50 URLs.

http://dl2.filehippo.com/.../Firefox Setup 23.0.exe

http://filehippo.com/download/file/.../

http://downloader.ez-download.com/download.php?id=4b8266b51f0b79677dbe30d0bddd25de26ff23b1&z=0&p=eyJweSI6ImV6IiwicnMiOiJnb29nbGUiLCJydCI6InNlYXJjaCIsImMiOiJ1cyIsIm8iOiJ3aW44IiwiYiI6ImNoMjkiLCJ1X2lkIjoiZXpfNTIyZTUyM2EzNTgyMjIuMzY0NTE5OTAiLCJwYV9pZCI6IjAiLCJzdF9pZCI6IjAiLCJzcF9pZCI6IjAwMDAtMDAwMCIsInRzIjoxMzc4NzY3NDE4LCJrdyI6Im1vemlsbGFmaXJlZm94IGZyZWUiLCJjdSI6Im1vemlsbGFmaXJlZm94IiwiY2EiOm51bGx9

http://downloader.ez-download.com/download.php?id=4b8266b51f0b79677dbe30d0bddd25de26ff23b1&z=0&p=eyJweSI6ImV6IiwicnMiOiJnb29nbGUiLCJydCI6InNlYXJjaCIsImMiOiJ1cyIsIm8iOiJ3aW43IiwiYiI6ImNoMzAiLCJ1X2lkIjoiZXpfNTI0ZjkyYmI4OThkNzUuNzQ2NTI1MTEiLCJwYV9pZCI6IjAiLCJzdF9pZCI6IjAiLCJzcF9pZCI6IjAwMDAtMDAwMCIsInRzIjoxMzgwOTQ2NjE5LCJrdyI6Im1vemlsbGEiLCJjdSI6ImZpcmVmb3giLCJjYSI6bnVsbH0=

http://downloader.ez-download.com/download.php?id=9527e2a6879911e89a89c8977cfd2a9681f77e59B&z=0&p=eyJweSI6ImV6IiwicnMiOiJnb29nbGUiLCJydCI6InNlYXJjaCIsImMiOiJnYiIsIm8iOiJ3aW43IiwiYiI6ImNoMjkiLCJ1X2lkIjoiZXpfNTIzYmRmNDA3YmFmZjAuOTY4Nzc3MzAiLCJwYV9pZCI6IjAiLCJzdF9pZCI6IjAiLCJzcF9pZCI6IjAwMDAtMDAwMCIsInRzIjoxMzc5NjU1NDg4LCJrdyI6Im1vemlsbGFmaXJlZm94IiwiY3UiOiJtb3ppbGxhZmlyZWZveCIsImNhIjpudWxsfQ==

http://downloader.ez-download.com/download.php?id=9527e2a6879911e89a89c8977cfd2a9681f77e59B&z=0&p=eyJweSI6ImV6IiwicnMiOiJnb29nbGUiLCJydCI6InNlYXJjaCIsImMiOiJpdCIsIm8iOiJ3aW44IiwiYiI6ImNoMzAiLCJ1X2lkIjoiZXpfNTI2MmJlN2VjMmJkNzYuMjM1ODY3OTQiLCJwYV9pZCI6IjAiLCJzdF9pZCI6IjAiLCJzcF9pZCI6IjAwMDAtMDAwMCIsInRzIjoxMzgyMjAzMDA2LCJrdyI6ImZpcmVmb3giLCJjdSI6Im1vemlsbGEiLCJjYSI6bnVsbH0=

http://downloader.ez-download.com/download.php?id=4b8266b51f0b79677dbe30d0bddd25de26ff23b1&z=0&p=eyJweSI6ImV6IiwicnMiOiJnb29nbGUiLCJydCI6InNlYXJjaCIsImMiOiJ1cyIsIm8iOiJ3aW44IiwiYiI6ImNoMjkiLCJ1X2lkIjoiZXpfNTIzZjkxZjQ3NmU3MzcuODU3MjQ4NTAiLCJwYV9pZCI6IjAiLCJzdF9pZCI6IjAiLCJzcF9pZCI6IjAwMDAtMDAwMCIsInRzIjoxMzc5ODk3ODQ0LCJrdyI6Im1vemlsbGEiLCJjdSI6ImZpcmVmb3giLCJjYSI6bnVsbH0=

http://filehippo.com/download/file/.../

http://w1.mien-phi.com/data/soft/2013/08/.../FirefoxSetup23.0.exe

http://downloader.ez-download.com/download.php?id=c540d71f038f9deb184660e0867ad533ceb54623&z=0&p=eyJweSI6ImV6IiwicnMiOiJnb29nbGUiLCJydCI6InNlYXJjaCIsImMiOiJ1cyIsIm8iOiJ3aW52IiwiYiI6ImNoMjciLCJ1X2lkIjoiZXpfNTIyNDUyNzgxNWE4NTcuMjY1NjcyNDMiLCJwYV9pZCI6IjAiLCJzdF9pZCI6IjAiLCJzcF9pZCI6IjAwMjMtMDAwMCIsInRzIjoxMzc4MTEyMTIwLCJrdyI6Im1vemlsbGEiLCJjdSI6Im1vemlsbGFmaXJlZm94IiwiY2EiOm51bGx9

http://filehippo.com/download/file/.../

Latest 30 of 53 download URLs