eudora_7.1.0.9.exe

InstallShield

Qualcomm, Inc.

The program is a setup application that uses the InstallShield Setup installer. This is installed with Eudora. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
InstallShield Software Corporation  (signed by Qualcomm, Inc.)

Product:
InstallShield (R)

Description:
Setup.exe

Version:
9.01.429

MD5:
a257509c6d5a15947be49ac72185a2f7

SHA-1:
9dfb889ef112e2079be7485edd2acedfa1a4a1b3

SHA-256:
96aec8ea618e34f0deeea67854d01cba97ee99cc3080517d385d901e58cb4eb4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/3/2025 11:40:25 AM UTC  (today)

File size:
16.2 MB (16,993,736 bytes)

Product version:
9.01

Copyright:
Copyright (C) 2003 InstallShield Software Corp.

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Installer:
InstallShield Setup

Language:
English (United States)

Common path:
C:\users\{user}\downloads\eudora_7.1.0.9.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
3/26/2008 12:00:00 AM

Valid to:
5/7/2009 12:59:59 AM

Subject:
CN="Qualcomm, Inc.", OU=QIS, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Qualcomm, Inc.", L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4297A81A0EF4B58FD563345D7371953D

File PE Metadata
Compilation timestamp:
11/10/2003 11:16:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
393216:nNDOCO35PoNcfHt8CSRCVcSe2LNDnrCi63dShm5j9U12:nVOCO3WcfXSRCVcziNDr9dhm02

Entry address:
0xCC61

Entry point:
55, 8B, EC, 83, EC, 44, 56, FF, 15, 50, 21, 41, 00, 8B, F0, 85, F6, 75, 08, 6A, FF, FF, 15, 4C, 21, 41, 00, 8A, 06, 57, 8B, 3D, 44, 22, 41, 00, 3C, 22, 75, 1B, 56, FF, D7, 8B, F0, 8A, 06, 3C, 22, 74, 04, 84, C0, 75, F1, 80, 3E, 22, 75, 15, 56, FF, D7, 8B, F0, EB, 0E, 3C, 20, 7E, 0A, 56, FF, D7, 8B, F0, 80, 3E, 20, 7F, F6, 8A, 06, 84, C0, 74, 04, 3C, 20, 7E, E1, 83, 65, E8, 00, 8D, 45, BC, 50, FF, 15, 48, 21, 41, 00, F6, 45, E8, 01, 5F, 74, 06, 0F, B7, 45, EC, EB, 03, 6A, 0A, 58, 50, 56, 6A, 00, 6A, 00, FF...
 
[+]

Entropy:
7.9874

Packer / compiler:
InstallShield Custom

Code size:
65.5 KB (67,072 bytes)

The file eudora_7.1.0.9.exe has been discovered within the following program.

Eudora  by QUALCOMM Incorporated
Eudora is an email client that supports the POP3, IMAP and SMTP protocols. The original version is no longer in developement, there is an open-source version available.
www.eudora.com
About 1% of users remove it
 
Powered by Should I Remove It?

The file eudora_7.1.0.9.exe has been seen being distributed by the following 6 URLs.

http://gsf-cf.softonic.com/9df/b88/.../file?SD_used=0&channel=WEB&fdh=no&id_file=11455&instance=softonic_es&type=PROGRAM&Expires=1475699989&Signature=V2KACDPlnMzNdBykJMSI~GMFAfdzIeKCLTpgYubQzVKjHI2~aUp7uFMpJbAHuWv-mBUuT68~q~CDB2OKisDffOanP4v4RvIzdPFHFrC4FHKfnFdjBvFzY8OTUmDQb6H1ZSZQixGb0ndBeCmkmTP4X-dMw-ztzoLZrfqvDrzVzN4_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=Eudora_7.1.0.9.exe

http://gsf-cf.softonic.com/9df/b88/.../file?SD_used=0&channel=WEB&fdh=no&id_file=53851&instance=softonic_fr&type=PROGRAM&Expires=1478661080&Signature=RX8sBjWBEfmETjo7UZTPaQB48nxwZyq6XvZV52X5e~eBt9Hc9ciBkOFw-zhNwFP3ewI8qMprsR7h22BtdMHX-ZdXTj5d7xA4XJIL-jnwMMZ72S6OzpqDVBo~cCT9LrINhwAI6rRTEq4AmUd-4uW9yWoTsNGgVWRnW7hxjiNyn18_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=Eudora_7.1.0.9.exe

http://eudora.software.informer.com/.../

Scan eudora_7.1.0.9.exe - Powered by Reason Core Security