eb7cslingplayer.exe

Slingbox

Sling Media

This is a setup and installation application. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
Sling Media Inc.  (signed by Sling Media)

Product:
Slingbox

Description:
SlingPlayer Installer

Version:
1, 0, 0, 13

MD5:
48959948054573b06bf4c30207e9fe59

SHA-1:
804611758b2307945fbaf1778ad6ba3a00ff9456

SHA-256:
85fd52885b6ebf80077b4b6a96a9c3bc203871843188c377ad1bf820e4a356b5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 10:08:38 PM UTC  (today)

File size:
62.6 MB (65,683,960 bytes)

Product version:
1, 0, 0, 13

Copyright:
Copyright © Sling Media Inc. 2004-2008

Original file name:
Setup Launcher.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\sling media\autoupdatefiles\eb7cslingplayer.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/7/2008 8:00:00 PM

Valid to:
6/16/2010 7:59:59 PM

Subject:
CN=Sling Media, OU=none, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Sling Media, L=San Mateo, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4E7A351257C516F8988395F10C2AF033

File PE Metadata
Compilation timestamp:
10/14/2009 10:29:42 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1572864:YumB7mA0Xr+BJCrekqDyi61jVvrREbiKPiHawMs+iZN:YumB7mA0Xr+BJCrefyi6xVvSbiKqvtf

Entry address:
0x6FE7F

Entry point:
E8, F8, AE, 00, 00, E9, 79, FE, FF, FF, 3B, 0D, 38, A3, 4D, 00, 75, 02, F3, C3, E9, 7A, AF, 00, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, A3, 58, E7, 4D, 00, 5D, C3, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A1, 38, A3, 4D, 00, 33, C5, 89, 45, FC, 83, A5, D8, FC, FF, FF, 00, 53, 6A, 4C, 8D, 85, DC, FC, FF, FF, 6A, 00, 50, E8, 9C, 7E, 00, 00, 8D, 85, D8, FC, FF, FF, 89, 85, 28, FD, FF, FF, 8D, 85, 30, FD, FF, FF, 83, C4, 0C, 89, 85, 2C, FD, FF, FF, 89, 85, E0, FD, FF, FF, 89, 8D, DC, FD, FF, FF, 89, 95, D8, FD...
 
[+]

Entropy:
7.9897  (probably packed)

Code size:
701 KB (717,824 bytes)

The file eb7cslingplayer.exe has been seen being distributed by the following 11 URLs.

http://gsf-cf.softonic.com/804/611/.../file?SD_used=0&channel=WEB&fdh=no&id_file=56469&instance=softonic_es&type=PROGRAM&Expires=1460640443&Signature=DI55oAreiIOSe~3UWPN3F-WprmAnNS6lvpkS~empoFCF9RJzIOdpzB4vPEAbHuCf9Rf4RxT7cKnnm9cr3A~~yoouaoiCqbXSPhMLSo~7cWbmaOWV~XHCybn5vA67k8yQW8Jz87QAuOBqYclzaYuSjLRwh3hTnWfWyRzPRMFWe7U_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=SlingPlayer-2.0.4-Setup.exe

http://gsf-cf.softonic.com/804/611/.../file?SD_used=0&channel=WEB&fdh=no&id_file=56469&instance=softonic_es&type=PROGRAM&Expires=1479298738&Signature=C-qmgoYpfUEQ29GOzVV6UGAK-5KwJUg81IBe86uwFDOwTIG9~ACHVHzdOkmg9g2e6R3bV-lh9EcrFNOxbomf5tnl7gzf-f7rRtFb~SrdfpYWY~O0KaQuqznUdd1FV63htkC4hJh6wf59AWSWct5sohKL3Q~EvfDNvCW2f8LdrFE_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=SlingPlayer-2.0.4-Setup.exe

http://gsf-cf.softonic.com/804/611/.../file?SD_used=0&channel=WEB&fdh=no&id_file=56469&instance=softonic_es&type=PROGRAM&Expires=1436432126&Signature=JU9Y-24UBlNnm9EYfH-ykmUGrc0vyiTV0FDmwMmy58ml~Zbjfx6b--eRbko3ZC9iA-7bGF4wPZnzMEpyfU7PFAN2~eIIzFqgh29VLaV20U5HJskHpuD38Yl4XBORaOPyMzUFfB6HpLObewqWgb2OBUUgBYuyudK7kRiNQ7eyMi8_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=SlingPlayer-2.0.4-Setup.exe

http://gsf-cf.softonic.com/804/611/.../file?SD_used=0&channel=WEB&fdh=no&id_file=56469&instance=softonic_es&type=PROGRAM&Expires=1470727185&Signature=Yg0~QeRyzKQDZP~tbq5i3KcvbAtlUmht6cOUl3TgYhlidEH9VCapT7bpivxUC9Wt8vo15yON-euqg8-UBGeCBKRhvtPawQaI7EjUNhVtD8Njf9dRvWhfx1~ZifKqg5JHMaHJYK64ugJc4FvuffBX3HfbR9i6Xfd0L9C7SpTjeZs_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=SlingPlayer-2.0.4-Setup.exe

Scan eb7cslingplayer.exe - Powered by Reason Core Security