bdf776en.exe

PackageForTheWeb Stub

Hewlett-Packard

The program is a setup application that uses the InstallShield Setup installer. The file has been seen being downloaded from h20564.www2.hp.com and multiple other hosts.
Publisher:
InstallShield Software Corporation  (signed by Hewlett-Packard)

Product:
PackageForTheWeb Stub

Version:
2.04.001

MD5:
e0ac7eb7fec3490e7f1710e8c22f32c0

SHA-1:
7d42f137a42e62808d58eb0fca7658ad1bf9c3c1

SHA-256:
238965bea049bc4b76f1ad2eb6b6a65ec82a84da4cd6be1960cbfaf6564bbf9f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 2:52:00 PM UTC  (today)

File size:
397.1 KB (406,664 bytes)

Product version:
2.04.001

Copyright:
Copyright © 1996-1999 InstallShield Software Corporation

Original file name:
STUB32.EXE

File type:
Executable application (Win32 EXE)

Installer:
InstallShield Setup

Language:
English (United States)

Common path:
C:\users\{user}\downloads\bdf776en.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/11/2001 5:00:00 PM

Valid to:
4/12/2002 4:59:59 PM

Subject:
OU=R&D, CN=Hewlett-Packard, L=Cupertino, S=Ca, C=US, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU="www.verisign.com/repository/CPS Incorp. by Ref.,LIAB.LTD(c)96", OU=VeriSign Commercial Software Publishers CA, O="VeriSign, Inc.", L=Internet

Issuer:
OU=VeriSign Commercial Software Publishers CA, O="VeriSign, Inc.", L=Internet

Serial number:
1F7DA99312C9507D68E7C11D9024AA95

File PE Metadata
Compilation timestamp:
1/7/1999 11:10:41 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
12288:hdzgrJTC9FfYeq51mnyGaGn0CoBIsH2lj:fzMO91YFY9Ln0CoBB6

Entry address:
0xCE00

Entry point:
55, 8B, EC, 6A, FF, 68, 40, 31, 41, 00, 68, 58, F9, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, C4, A8, 53, 56, 57, 89, 65, E8, FF, 15, 8C, B4, 41, 00, 33, D2, 8A, D4, 89, 15, 10, 85, 41, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 0C, 85, 41, 00, C1, E1, 08, 03, CA, 89, 0D, 08, 85, 41, 00, C1, E8, 10, A3, 04, 85, 41, 00, E8, 94, 01, 00, 00, 85, C0, 75, 0A, 6A, 1C, E8, 39, 01, 00, 00, 83, C4, 04, C7, 45, FC, 00, 00, 00, 00, E8, EA, 27, 00, 00, E8, D5, 27, 00, 00, FF, 15, 90, B4, 41...
 
[+]

Entropy:
7.6204

Developed / compiled with:
Microsoft Visual C++

Code size:
70.5 KB (72,192 bytes)

The file bdf776en.exe has been seen being distributed by the following 3 URLs.

http://h20564.www2.hp.com/hpsc/swd/.../obtainSoftware?url=687474703A2F2F6674702E68702E636F6D2F7075622F736F66746C69622F736F667477617265312F7663343039312F766334303931656E2F626466373736656E2E657865