flashfxp5_3939_setup.exe

FlashFXP

OpenSight Software LLC

This is a self-extracting archive and installer. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
OpenSight Software LLC   (signed by OpenSight Software LLC)

Product:
FlashFXP

Description:
FlashFXP Installation

Version:
5.4.0.3939

MD5:
626da91ec220d5ae5e15a97d9b832f04

SHA-1:
71cf3bcff9068edae7ffe63108fd55fbbb0b4eb3

SHA-256:
e90a38a18ccf8b711c102fb07535ffe73b87e2fc1529a7fba4d8b6f1fe892830

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/17/2024 10:33:24 AM UTC  (today)

File size:
6.7 MB (7,015,792 bytes)

Product version:
5.4.0.3939

Copyright:
All rights reserved

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\flashfxp5_3939_setup.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
7/19/2015 5:00:00 PM

Valid to:
10/18/2018 4:59:59 PM

Subject:
CN=OpenSight Software LLC, O=OpenSight Software LLC, L=Quincy, S=Illinois, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
46BC2E32787C9108226D4CEB76FB048A

File PE Metadata
Compilation timestamp:
9/8/2015 3:01:54 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:Vd5F7IgXnU9g7IZdHecY0Q4ZQ6rn2Q37UstLC2Rf:VP6gk9GIZML4ewtU8hf

Entry address:
0x21BD6

Entry point:
E8, E1, 34, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, B8, 93, 43, 00, 89, 0D, B4, 93, 43, 00, 89, 15, B0, 93, 43, 00, 89, 1D, AC, 93, 43, 00, 89, 35, A8, 93, 43, 00, 89, 3D, A4, 93, 43, 00, 66, 8C, 15, D0, 93, 43, 00, 66, 8C, 0D, C4, 93, 43, 00, 66, 8C, 1D, A0, 93, 43, 00, 66, 8C, 05, 9C, 93, 43, 00, 66, 8C, 25, 98, 93, 43, 00, 66, 8C, 2D, 94, 93, 43, 00, 9C, 8F, 05, C8, 93, 43, 00, 8B, 45, 00, A3, BC, 93, 43, 00, 8B, 45, 04, A3, C0, 93, 43, 00, 8D, 45, 08, A3, CC, 93, 43...
 
[+]

Entropy:
7.9785  (probably packed)

Code size:
179 KB (183,296 bytes)

The file flashfxp5_3939_setup.exe has been seen being distributed by the following 13 URLs.

https://dw.uptodown.com/dwn/K_mvA2f7FmuC7rym_zwi5kbymoWsOYjOnFA491UDs3tj7wMSFwE8bWet6JEWvf4OHicFPNFz3xMwUguP2TjIJKbMzYhjJMUTne64tmBmOFygkyIct9fG2yC3H8cKsGZt/tXZ8_LYL9091t2sM9MFNercruuaDBILhiZ81qQXbrt5j08LDmTwnuvS8nnY_K58x8DIgHoqsPbyPAKLtuYbB2hntOexUZfPKbW5xVDrz9vm_5wZ8E_KvWhovw2VWmsDN/.../

https://www.flashfxp.com/portal/.../286

https://get.flashfxp.net/cdn-cgi/.../chk_captcha?id=2d7aee51b51450ce&g-recaptcha-response=03AHJ_VutL_Ex2j22Gyx8HoGRxOgxBgyWDQgxEN2G2_sV_EYMEvzUn1v_nOpUH35esfLR04Rm7f_GNE-6jnM54umApvo6l8hPf-3Nz_qQRIsVc2DLPyUo31aZKZhvGR5Eg-I0Xa10fvIg5f7bSdP3IcKsa9_NXcOglvBQhvAQ7ELK4JdhVPU8H9sJsTyUCsDvPTXM5ET1GRoUnC9sEiryF-Y228A2N3Xm5YvrvEGjbMIgpJZ0Q43UtqtI87Zj6fJnA37fMp_IJjaCfSEV3Y0aqJhLeNeuQ6xGRGCrNoKrGi3c0v1i-0e8uSZ3-0w-2dSnjsY_RtccvkPQ-RmbOW65mndnwSHMuHEVr-8nfE-jm71xOqJmCCDsHIboUGHpDoB8zVWrz28JHUbZjeaErjCvl2JU3dPt9Rc8D_fzWL0u7Pg5HQjf-bqfXRC9Lv-cKMthq89B91KkBikIB1Fh-QcIUFSSw4Lwim8KvvowH0PIOvawY-XnOsjAeEuejJTqyTxsdnNV9d2I_I8XrxQEDe5Z3exoTOuv5-1omrZXM-OT4SmNzdbaHah5ZbLjfHG09u40KYd7oOKQT_-1h7g6DDPqF_Ql_y34XInJaivwhdbkMgYlg0MNOdaVBtbnJcWgTMWl6v0ka3uniaK4ulj7q1GCwHhmjQahzn36lSCIa4EIIl1koa9OxhosY8Ovjflb_JjRv8yN0Qw1AfOW9QQOpS15DQgVGm5SHPzdJDNiW_wFPm968IgQWO0RI_zKYuUcnro7Cw1t2_2xpfG2UrWoRlqr3O0dqXn1uWgCxByyRCSosYj84vPLOyluEZrIF2xAe4F65BhJyNY3O4ctCE0zQwZkfTrydQ6RnfpvlriBSik6YuWMj7VKIU9AtfWoCvVUFbCD9HpZaciZfkulOTF

http://dw.uptodown.com/dwn/7BpdDUqGKDRKL01bm_y21jN6Pnjq4GQpuCnEFrsQXZbGVmsvdBmyVomBe8KBA8U_TpWRfD_JMnmz5kc4peoDhS0uPQAkz6jzZQc4mTNLoRnKbOK5SPJooFwnaxzyEz9Z/RQPL-5wymE14BXD8yfHV3dlEIrVrroJXvAECKlOfMCScn7PRB5gR2mCENhMXG0OUyONfvCOihJnQ97vmN_RIjAkUbwibTK_VNq1FvVUeKJf0WOZqf9iO9_ug_gXmzmMP/ki3cy9UkoLPsNB-iJzZoKqbN5dZHJvBJ7sN8846xJ_bqTyS3bbBnp9Mv8GmT49z2mNZMzj41GkL9lvXtlMGd1Kka8yd4KZkTGJXqEOhXndVhmkeNVLrBjzoMN76MepMu/.../

http://w.x.baidu.com/alading/.../11051

http://dw.uptodown.com/dwn/FaOHp9T2Ni569O7ECGkASvO_ACZkKK0VBiTN559_h86vF5Zab5vqQZR15mUG1ju6LPdbTac83TMHJ5Agi4nmWu5sFoIsKeZXHP3Aw2N_-kJ14vzdWcJ42AJOzv2Jyp54/YgNuwegqDNhX0SUIhJbtZ9BmP7ooMCplZljwO1CxYX0ne9TdTz2k_Vsefw8sH2vbfkb_Nqds5ixII1x6nxsHhT5v9c5Gd8C-a4WlaaOW2yWb40zvmSohLF3MGMIpXroZ/61vsgeLA8GOUOjUBBdBrfeDx6BpYgHNQVDkhQn7Hm5LsQ3ZfE1Wm34fNRPcyD_ESuPilDYGr-_7c3RT0XKvc5-r6XKpaGMWc0j8vaS3Ku-9zTgl2mkvkzko6rxejEXJj/.../

http://sw.bos.baidu.com/sw-search-sp/software/.../FlashFXP54_5.4.0.3939_Setup.exe

https://get.flashfxp.net/ftp/client/download/.../FlashFXP54_3939_Setup.exe

http://www.techspot.com/downloads/downloadnow/.../?evp=a32132e834c9f8abb9229bd16aa99a3a&file=1

http://dw.uptodown.com/dwn/i8IqtX0kE-G-GS2Qvz3I_C-tVO6tPr4_Q-C0g8dxNF6NGd7ADixx1HxQHvj8rStG_vWqYW3583rJSLgtYAbBEBQcp1eEUrThU20271c5f4yj2DXgIVJFB9UYOOuGC9Kx/Bm5MTmM5HhV7Cq62_Lue9kzqzI0FRW_HTW18UwcYZoU-r-O4XV9JskXVjTJgfFfm4mKc4uJZvchAUD6is4E6Abk7DpN2csulzb6FrYtYZKhJnQzi4D8eQV2vFGlxd-uO/XaaLrSixjWbKs2u90Is-v5ddelpbFBlS-0IuDJcC1eVmQB6Lp77CmZgFIssNS3lzwU17QZ5Vz3fX5CPX4yUYeb2JhUAQz7ejcD95yx0oPAr4yVs8nTB0LknAK4W4mfRc/.../

http://alt-download.flashfxp.com/FlashFXP54_3939_Setup.exe

Scan flashfxp5_3939_setup.exe - Powered by Reason Core Security