dvd-creator_setup_full619.exe

DVDCreator

Shenzhen Wondershare Information Technology Co., Ltd.

According to AVG, this software downloads additional adware offers during setup. The file has been seen being downloaded from www.google.com and multiple other hosts.
Product:
DVDCreator

Description:
dvdcreator_setup_full619.exe

Version:
1.2.1.1

MD5:
038e2b3d2ea0914eea4f3489003f576f

SHA-1:
3deccccbee3045b66d9be023fb166ab0edef0431

SHA-256:
7f643f4c9c0ebbbed69ba525e70d479f37582e8a03a7abb105067d59c484bf48

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/25/2024 11:29:19 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Downloader
2016.0.3064

File size:
786.1 KB (804,936 bytes)

Product version:
3.4.0

Copyright:
Copyright 2015 Wondershare Corporation

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\dvd-creator_setup_full619.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/25/2013 5:00:00 PM

Valid to:
9/24/2015 4:59:59 PM

Subject:
CN="Shenzhen Wondershare Information Technology Co., Ltd.", OU=Project Management, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Shenzhen Wondershare Information Technology Co., Ltd.", L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5209CE411DC780947AC0E4E9E3B95D44

File PE Metadata
Compilation timestamp:
3/29/2015 7:41:41 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:XZF+VJiWZenEwqdnSH8iSbDc9OGB1H8YaS+pIWkICWgsG1zm3:XCkoiSk9v+pITMgDzm3

Entry address:
0x5070D

Entry point:
E8, 5A, DF, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 53, 8B, 45, 0C, 83, C0, 0C, 89, 45, FC, 64, 8B, 1D, 00, 00, 00, 00, 8B, 03, 64, A3, 00, 00, 00, 00, 8B, 45, 08, 8B, 5D, 0C, 8B, 6D, FC, 8B, 63, FC, FF, E0, 5B, C9, C2, 08, 00, 58, 59, 87, 04, 24, FF, E0, 8B, FF, 55, 8B, EC, 51, 51, 53, 56, 57, 64, 8B, 35, 00, 00, 00, 00, 89, 75, FC, C7, 45, F8, 7B, 07, 45, 00, 6A, 00, FF, 75, 0C, FF, 75, F8, FF, 75, 08, E8, A7, C1, 01, 00, 8B, 45, 0C, 8B, 40, 04, 83, E0, FD, 8B, 4D, 0C, 89, 41, 04, 64, 8B, 3D...
 
[+]

Entropy:
6.9176

Code size:
449.5 KB (460,288 bytes)

The file dvd-creator_setup_full619.exe has been seen being distributed by the following 7 URLs.

https://www.google.com/url?hl=en&q=http://.../dvd-creator_full619.exe&source=gmail&ust=1480206063392000&usg=AFQjCNFCnmy7LmcoGOtfKdw5JSYwVEf10g

http://cbs.wondershare.com/go.php?track=download_start&name=dvd-creator_full619&pid=619&back_url=http://download.wondershare.com/.../dvd-creator_setup_full619.exe

https://www.google.com/url?hl=en&q=http://.../dvd-creator_full619.exe&source=gmail&ust=1471882860532000&usg=AFQjCNF8csYf_4L-sPVikJA3aqgwGFLX_Q

http://filehippo.com/download/file/.../

Scan dvd-creator_setup_full619.exe - Powered by Reason Core Security