ng_2015.exe

NEXXIA SOFT, S.L.

This is a setup program which is used to install the application. The file has been seen being downloaded from www.softonic.com and multiple other hosts.
Publisher:
NEXXIA SOFT, S.L.  (signed and verified)

MD5:
9d61a36199c475e321d6c88d2de13ab3

SHA-1:
5ce9f6843c6bada62cf687108c461ed4cc078427

SHA-256:
50fb29a01e6deeda7e5cbcb02fb45c0ff5a9e4e38833eb73cd21186e2dca90dc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/29/2024 8:36:04 PM UTC  (today)

File size:
79.2 MB (83,021,136 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\ng_2015.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
1/9/2015 1:00:00 AM

Valid to:
2/9/2016 12:59:59 AM

Subject:
CN="NEXXIA SOFT, S.L.", O="NEXXIA SOFT, S.L.", L=Barcelona, S=Barcelona, C=ES

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
6AEA46987704CA1A839B44E531955AC0

File PE Metadata
Compilation timestamp:
3/15/2010 7:27:58 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1572864:RK1zJRulhCZ1xTuZBh1TmpLuZmCSYLEN/AQOfZuMgHq00VfAsNK5Ux8:MzJRulUrczhBEuZ1TwRATUr0JAuKW8

Entry address:
0x913F

Entry point:
E8, 1E, FF, FF, FF, 33, C0, 50, 50, 50, 50, E8, BF, 2A, 00, 00, C3, 56, 57, 8B, 7C, 24, 0C, 8B, F1, 8B, CF, 89, 3E, E8, FC, 9D, FF, FF, 89, 46, 08, 89, 56, 0C, 8B, 87, 1C, 0C, 00, 00, 89, 46, 10, 5F, 8B, C6, 5E, C2, 04, 00, 8B, C1, 8B, 08, 8B, 50, 10, 3B, 91, 1C, 0C, 00, 00, 75, 0D, 6A, 00, FF, 70, 0C, FF, 70, 08, E8, 63, A2, FF, FF, C3, 55, 8B, EC, 83, EC, 1C, 56, 33, F6, 56, 56, 56, 56, 8D, 45, E4, 50, FF, 15, 18, D2, 40, 00, 85, C0, 74, 21, 56, 56, 56, 8D, 45, E4, 50, FF, 15, 1C, D2, 40, 00, 8D, 45, E4...
 
[+]

Code size:
48 KB (49,152 bytes)

The file ng_2015.exe has been seen being distributed by the following 5 URLs.

http://www.softonic.com/sads/tracker.php?ev=c&co=ES&sid=fb3c8490454a5fd21d47af3a56769197&upv=092eac7aed84a7693974d17f53f917da&z=results&sk=0&abp=0&abt=&eid=&params=F24F8F4D368AFA5D32C8A90D9EFD1CBA74D792929236F754903678EE7DA0512206CF0A9D695B410CEA98FBC2B165CF1093C2A05B662C73721319F1D51EE87828722024C413166A639091AFB8A066F2DE1678A03A3A71ECED287FA7D9814C953890EAD9515BDA738FDE9B340575DE5652484CD66B472B3F267E79458B34225DFCB3E7A88BEB802840D0FA8A335814358C6A250B53CFCC59EA34E98A603574FE3F&h=7CC26E5B2046810446A66B4C65C9661D3BE277FDD3E2FA0E8364716B8EBFADD6&directdownload=1&f=304722&d=http://www.nexxiasoft.com/downloads/rsl/.../NG_2015.exe

Scan ng_2015.exe - Powered by Reason Core Security