opera_27.0.1689.69_setup.exe

Opera Installer

Opera Software ASA

This is a self-extracting archive and installer. The file has been seen being downloaded from dl.cdn.chip.de and multiple other hosts.
Publisher:
Opera Software  (signed by Opera Software ASA)

Product:
Opera Installer

Version:
27.0.1689.69

MD5:
4e90426ff1d88920b01fa21fb4154dd3

SHA-1:
024690abd8f79722af0d8ee9f8fe18048382c560

SHA-256:
946bdee96a810fbf828f23ff5af7e6317c65b9694701711ac3633ec14e8eebea

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
9/19/2018 6:43:14 AM UTC  (today)

File size:
31.4 MB (32,900,504 bytes)

Product version:
27.0.1689.69

Copyright:
Copyright © Opera Software 2015

Original file name:
installer.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\opera_27.0.1689.69_setup.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
4/6/2014 8:00:00 PM

Valid to:
4/6/2017 7:59:59 PM

Subject:
CN=Opera Software ASA, O=Opera Software ASA, L=Oslo, S=Oslo, C=NO, SERIALNUMBER=974 529 459, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.3=NO

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
71CAC98F650605955D9AD86CF2BD56B6

File PE Metadata
Compilation timestamp:
2/9/2015 7:39:01 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
786432:ikSkbnti1cxW57/PX/3JybD0mPUuO65bo9cOBrKLA3:dmb5XBybDVPUB2bo9cOBp3

Entry address:
0x8E8CD

Entry point:
E8, FC, B9, 00, 00, E9, 7F, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, 57, 56, 8B, 74, 24, 10, 8B, 4C, 24, 14, 8B, 7C, 24, 0C, 8B, C1, 8B, D1, 03, C6, 3B, FE, 76, 08, 3B, F8, 0F, 82, 68, 03, 00, 00, 0F, BA, 25, 8C, 0C, 4F, 00, 01, 73, 07, F3, A4, E9, 17, 03, 00, 00, 81, F9, 80, 00, 00, 00, 0F, 82, CE, 01, 00, 00, 8B, C7, 33, C6, A9, 0F, 00, 00, 00, 75, 0E, 0F, BA, 25, 94, E8, 4D, 00, 01, 0F, 82, DA, 04, 00, 00, 0F, BA, 25, 8C, 0C, 4F, 00, 00, 0F, 83, A7, 01, 00, 00, F7, C7, 03, 00, 00, 00, 0F, 85, B8...
 
[+]

Entropy:
7.9924  (probably packed)

Code size:
752.5 KB (770,560 bytes)

The file opera_27.0.1689.69_setup.exe has been seen being distributed by the following 25 URLs.

http://dl.cdn.chip.de/downloads/.../Opera_27.0.1689.69_Setup.exe

http://113.171.224.212/.../Opera_27.0.1689.69_Setup.exe

http://113.171.224.208/.../Opera_27.0.1689.69_Setup.exe

http://www.filehippo.com/download/file/.../

http://113.171.224.241/.../Opera_27.0.1689.69_Setup.exe

http://www.bin.ge/getfilee.php?id=ACAE58B3&access_key=NjExYzJiM2I0ODY3MTkzMmRhMDQ2NWFjYmVlMzc2Y2Y2Y2IwZDkwYWIwYzRkYTM4MDkzZTUwNDJhZTYwNTJjNkI1&captcha=383536

http://lb.cdn.m6web.fr/d/c/a/22feaf74e250361dfdc7a1e069167b75/54f07f61/soft/.../opera_27-0-1689-69_fr_18773.exe

http://www.bin.ge/getfilee.php?id=ACAE58B3&access_key=NDI1M2ZkYTQ3MjAzYzdlYTQ5ZjQzMzg2MjA4NmEwMTU5ZGY3ZDU1NzgwM2ZhNGUwZDJjYWVhMGMwYzNiMzFkNzAx&captcha=383138

http://www.bin.ge/getfilee.php?id=ACAE58B3&access_key=YzhlYzlhZmQ5YjA0MGZhNTMzMDc4ZWI4MDA0MTBiYTFiNjU2MDNiM2M1ZTQ4NzkzYjk5NWRjMGFjZGNiM2Y1MTI3&captcha=333838

http://113.171.224.165/.../Opera_27.0.1689.69_Setup.exe

http://113.171.224.242/.../Opera_27.0.1689.69_Setup.exe

http://113.171.224.177/.../Opera_27.0.1689.69_Setup.exe

http://91.74.184.67/.../Opera_27.0.1689.69_Setup.exe