divxinstaller.exe

Installer

DivX, LLC

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from software.oldversion.com and multiple other hosts.
Publisher:
DivX, LLC  (signed and verified)

Product:
Installer

Description:
DivX Plus Standalone Installer

Version:
1.8.9.300

MD5:
d3afde60c7b4ee3dc4872e315305183f

SHA-1:
59635e6b7f0ed65668296ed4b87e47c5742dd687

SHA-256:
7a2f8e1ab144617a2baea0260048c31779616518fe9935363883d96907e517a5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 2:31:29 PM UTC  (today)

File size:
59.9 MB (62,838,576 bytes)

Copyright:
Copyright (c) DivX, LLC 2011

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\divxinstaller.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
10/15/2012 2:00:00 AM

Valid to:
12/15/2014 12:59:59 AM

Subject:
CN="DivX, LLC", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="DivX, LLC", L=Santa Clara, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1F936096A65A95BEB4A7B700B63C36CB

File PE Metadata
Compilation timestamp:
2/19/2010 2:13:50 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1572864:OlAdaEr+FUJ5rIP8tB0R/aI9F60TBourr1RmnS:4AWUJ5rSCBsiI980TBoA5

Entry address:
0x3367

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, A8, 73, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, B8, 3C, 42, 00, E8, FE, 24, 00, 00, 53, 68, 60, 01, 00, 00, A3, C0, 3B, 42, 00, 8D, 44, 24, 38, 50, 53, 68, 3B, 74, 40, 00, FF, 15, 58, 71, 40, 00, 68, 30, 74, 40, 00, 68, C0, 33, 42, 00, E8, F0, 23, 00, 00, FF, 15, B0, 70, 40, 00, 50, BF, 00, 90, 42, 00, 57, E8, DE, 23, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file divxinstaller.exe has been discovered within the following program.

360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
 
Powered by Should I Remove It?

The file divxinstaller.exe has been seen being distributed by the following 6 URLs.

http://software.oldversion.com/download.php?f=YTo1OntzOjQ6InRpbWUiO2k6MTQxODQ3MjE3MDtzOjI6ImlkIjtpOjE2MjQ2O3M6NDoiZmlsZSI7czoyODoiZGl2eC05LTAtMi1EaXZYSW5zdGFsbGVyLmV4ZSI7czozOiJ1cmwiO3M6NDQ6Imh0dHA6Ly93d3cub2xkdmVyc2lvbi5jb20vd2luZG93cy9kaXZ4LTktMC0yIjtzOjQ6InBhc3MiO3M6MzI6IjZjYjY4MDg5MDc2ZTc1YjVjMGU5NzU1YTlhZWQwM2U2Ijt9

http://software.oldversion.com/download.php?f=YTo1OntzOjQ6InRpbWUiO2k6MTQ4NTY1OTM2NDtzOjI6ImlkIjtpOjE2MjI0O3M6NDoiZmlsZSI7czozMzoiZGl2eC1wbGF5LTktMC0yLURpdlhJbnN0YWxsZXIuZXhlIjtzOjM6InVybCI7czo0OToiaHR0cDovL3d3dy5vbGR2ZXJzaW9uLmNvbS93aW5kb3dzL2RpdngtcGxheS05LTAtMiI7czo0OiJwYXNzIjtzOjMyOiI1ODdiYzcyMTg0MTdmZTA0MzQ3NTFmMGY4Y2JkMDdhMiI7fQ==

http://software.oldversion.com/download.php?f=YTo1OntzOjQ6InRpbWUiO2k6MTQ1OTgyODQxOTtzOjI6ImlkIjtpOjE2MjI0O3M6NDoiZmlsZSI7czozMzoiZGl2eC1wbGF5LTktMC0yLURpdlhJbnN0YWxsZXIuZXhlIjtzOjM6InVybCI7czo0OToiaHR0cDovL3d3dy5vbGR2ZXJzaW9uLmNvbS93aW5kb3dzL2RpdngtcGxheS05LTAtMiI7czo0OiJwYXNzIjtzOjMyOiI5YThkYzkyZDZiYTNkMjI3NDVjYjg0OWQ5ZWYwZWIxNCI7fQ==

http://software.oldversion.com/download.php?f=YTo1OntzOjQ6InRpbWUiO2k6MTQ3MjcyNTY5MDtzOjI6ImlkIjtpOjE2MjI0O3M6NDoiZmlsZSI7czozMzoiZGl2eC1wbGF5LTktMC0yLURpdlhJbnN0YWxsZXIuZXhlIjtzOjM6InVybCI7czo0OToiaHR0cDovL3d3dy5vbGR2ZXJzaW9uLmNvbS93aW5kb3dzL2RpdngtcGxheS05LTAtMiI7czo0OiJwYXNzIjtzOjMyOiJjYWVhOTI3YjQ3MWJkNjQ3NDQ2ZTNiMWU1ODE1MTY0YiI7fQ==

http://software.oldversion.com/download.php?f=YTo1OntzOjQ6InRpbWUiO2k6MTQ3NzA1NzIwMTtzOjI6ImlkIjtpOjE2MjI0O3M6NDoiZmlsZSI7czozMzoiZGl2eC1wbGF5LTktMC0yLURpdlhJbnN0YWxsZXIuZXhlIjtzOjM6InVybCI7czo0OToiaHR0cDovL3d3dy5vbGR2ZXJzaW9uLmNvbS93aW5kb3dzL2RpdngtcGxheS05LTAtMiI7czo0OiJwYXNzIjtzOjMyOiIwNzliZmMwYjdkNWRlNWU5ZTIxMzhkYmE1ZmM2MjAyOSI7fQ==

Scan divxinstaller.exe - Powered by Reason Core Security