freeze-setup-1.0.28.exe

Phoenix Freeze

Phoenix Technologies Ltd

The program is a setup application that uses the InstallShield Setup installer. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
Phoenix Technologies   (signed by Phoenix Technologies Ltd)

Product:
Phoenix Freeze

Description:
Contact: Your local administrator

Version:
1.0.28

MD5:
041c237e35b23864cb4669c2d89872f7

SHA-1:
83af7583ce7aca9447b6dc1102c84fc095293802

SHA-256:
05495521ae43f17931bc96207f0c52f4dc64d5c20d13ffc0b6dfd75794999459

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 10:46:59 PM UTC  (today)

File size:
11.5 MB (12,044,144 bytes)

Product version:
1.0.28

Copyright:
Copyright (C) 2009 Phoenix Technologies

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Installer:
InstallShield Setup

Language:
English (United States)

Common path:
C:\users\{user}\downloads\freeze-setup-1.0.28.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/11/2008 7:00:00 PM

Valid to:
9/17/2010 6:59:59 PM

Subject:
CN=Phoenix Technologies Ltd, OU=Security Products Engineering, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Phoenix Technologies Ltd, L=Milpitas, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
66FD6E29F3593514AA36AB9DE0007F37

File PE Metadata
Compilation timestamp:
9/11/2008 12:55:59 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:XGY6k6LnzEmaNk4LBx0Jf0qdXAhHwpGkrjexpGmRJttrg608C6ZYdK:Jqd4lOJf0qdwhQcIKxpnltrO6ZYdK

Entry address:
0x36327

Entry point:
55, 8B, EC, 6A, FF, 68, 08, AD, 46, 00, 68, 48, A1, 43, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 74, 91, 46, 00, 33, D2, 8A, D4, 89, 15, C4, 5F, 48, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, C0, 5F, 48, 00, C1, E1, 08, 03, CA, 89, 0D, BC, 5F, 48, 00, C1, E8, 10, A3, B8, 5F, 48, 00, 6A, 01, E8, 4E, 24, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, 65, 0D, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Entropy:
7.9880

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
416 KB (425,984 bytes)

The file freeze-setup-1.0.28.exe has been seen being distributed by the following 20 URLs.

http://gsf-cf.softonic.com/83a/f75/.../file?SD_used=0&channel=WEB&fdh=no&id_file=82137&instance=softonic_es&type=PROGRAM&Expires=1470319515&Signature=AugrdSZh50hPfmKyBX5Q5owi0wrzW-feuIVcgWuOlAP-aWBXGFeDkBfG6m8TucubZwTV6cKLMmcdyy48Zllz9YHxoilwwto5Fil9OoErOJKsvK1MTil1GATukY175MerZj8KL1rbTw3XHbzMXFFLZWhFg4SKDi9AmZlBHyiw8RU_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=freeze-setup.exe

http://gsf-cf.softonic.com/83a/f75/.../file?SD_used=0&channel=WEB&fdh=no&id_file=82137&instance=softonic_es&type=PROGRAM&Expires=1478273229&Signature=YuZkG1~WiyzaiSIH9i1fUtHzWDGUcA5yNePIW3MC0tVpgoGS3hPUm8enyEqADJ~NQeySSFa0z~iGvpiJAFGaet8d7r~JgnOsXRVIUn0-v~yABfo6mxqchG~Ht1~z4odI14ovNL1~3JFGmgA3psdCzKRVVLtwsjR6GmK49Q54qzE_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=freeze-setup.exe

http://gsf-cf.softonic.com/83a/f75/.../file?SD_used=0&channel=WEB&fdh=no&id_file=82137&instance=softonic_es&type=PROGRAM&Expires=1438666343&Signature=dchKuDRbA8pNDkY5oxUiinmW~aJKAhd1nmBzOfUY0ABGQjjTFfxNVaMK0KH86ht1W9etyz9cToKlB9h~vEc4e0WrDU5Fr9zHTzTiPNr979714fL8YcODgs6pUfckgebsAOvMjTVU2ELxMEoJ6-ICI-Je509T0rpwZ5vmdbwtPfQ_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=freeze-setup.exe

http://gsf-cf.softonic.com/83a/f75/.../file?SD_used=0&channel=WEB&fdh=no&id_file=82137&instance=softonic_es&type=PROGRAM&Expires=1475762346&Signature=FNCj7amIBrRnJurp53M3-ligANU59MvFe3v~EUIDJ0UvEdoxOQx~5o6lTdd4ixmV51lETkr03sDnV~3XeKV-vg7Pcg2zIohWCXy4M-8KARz3SjAnnn0gd0ope8WySJ1tLovGZGiViQVEfRIrgS50KoA1rvM3F5yO~a1bnYqcmis_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=freeze-setup.exe

http://gsf-cf.softonic.com/83a/f75/.../file?SD_used=0&channel=WEB&fdh=no&id_file=82137&instance=softonic_es&type=PROGRAM&Expires=1477486956&Signature=TO3zO~A6qXy~CJcMoArW0jk7BHKQtPGfNpSe68nYdHngdA-uLyixz1tbMlvgkt8OfRI4O631AsGvlXJew9TlvyOQfdZoaTB997a3sJsS0jVFk4yHz17JmiQhTR-dqtd5-0DJu-IcT66TeVypEEOPa05TN7O0XcMkdzLLinupgas_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=freeze-setup.exe

http://gsf-cf.softonic.com/83a/f75/.../file?SD_used=0&channel=WEB&fdh=no&id_file=82137&instance=softonic_es&type=PROGRAM&Expires=1468224715&Signature=IEjqO80DP6kP6tkhtXLR9qJk~jvwGAw~qJYKXbX75vgc1kYmw6mfmScHXSpxYdORyNiGQtqF0HqpYu2mS--6PCKATP3OjKwg8rdAmMw4SsAYMIbNuOTJA3VXd0vW5niyI21XG6c48vFC~k3NZKPopb-PnAg1rRqskBcru9CeEys_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=freeze-setup.exe

http://gsf-cf.softonic.com/83a/f75/.../file?SD_used=0&channel=WEB&fdh=no&id_file=82137&instance=softonic_es&type=PROGRAM&Expires=1469517626&Signature=acnfB~0Mcernexs4rb4VZubCrQY66qQQfthB5H~pPmmGKBrwRF5WPyq6eU~DpynTqFUfjSFC4GXzmEOsnoc-WpBdmoIT12uGNFd7nt5N~iCgdLqExmg9ITEnoT3R9afgieXxyJby2xxpNHqtJzEjb6nIQm9ZIjR8WTVZK5EhlyY_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=freeze-setup.exe

Scan freeze-setup-1.0.28.exe - Powered by Reason Core Security