opera_installer_20160504090049.exe

Opera Installer

Opera Software ASA

This is a self-extracting archive and installer. The file has been seen being downloaded from lb.cdn.m6web.fr and multiple other hosts.
Publisher:
Opera Software  (signed by Opera Software ASA)

Product:
Opera Installer

Version:
37.0.2178.32

MD5:
f330a09be951130916750cd1f6b4bf13

SHA-1:
f2f7c635d04d74a3ebd5101d96f23d03c635eca3

SHA-256:
ef656ba415ad3af22a8453880f643ccf5d7e5bd265c186732281ee90ab6400ba

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/20/2017 11:26:25 PM UTC  (today)

File size:
37.4 MB (39,177,480 bytes)

Product version:
37.0.2178.32

Copyright:
Copyright Opera Software 2016

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\opera_installer_20160504090049.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
1/25/2016 1:00:00 AM

Valid to:
1/29/2019 1:00:00 PM

Subject:
CN=Opera Software ASA, O=Opera Software ASA, L=Oslo, S=Oslo, C=NO, PostalCode=0484, STREET=Gjerdrums vei 19, SERIALNUMBER=974 529 459, OID.1.3.6.1.4.1.311.60.2.1.3=NO, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0510E03CD7B8B71E2E2DB16679B09595

File PE Metadata
Compilation timestamp:
4/28/2016 12:58:28 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
786432:SYHER2ruHGpC0WFCvEK8uBThpVCKdjbkfcgwae+vEr0RVP7UAWQPv+djG:SYkR2oGC0CJK8u9tCOmcgw+MsSA+dy

Entry address:
0x4802

Entry point:
E8, 9E, 2F, 00, 00, E9, 7F, FE, FF, FF, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9, 00, 00, FF, 00, 74, 13, A9, 00, 00, 00, FF, 74, 02, EB, CD, 8D, 41, FF, 8B, 4C, 24, 04, 2B, C1, C3, 8D, 41, FE, 8B, 4C...
 
[+]

Code size:
54 KB (55,296 bytes)

The file opera_installer_20160504090049.exe has been seen being distributed by the following 22 URLs.

http://lb.cdn.m6web.fr/d/c/a/27e2601c035ccf0ad3bee0c16ffc7614/572bbb00/soft/.../opera_37-0-2178-32_fr_18773.exe

http://www.opera.com/download/.../?id=39473&location=360&nothanks=yes&sub=marine

http://besplatnovse.ru/go?http://get.geo.opera.com/pub/opera/desktop/37.0.2178.32/.../Opera_37.0.2178.32_Setup.exe

http://files.instaluj.cz/dwl/6ab9fed34f74f9569c9b6b69b8d9c32c/internet-site/prohlizece/opera/.../Opera_37.0.2178.32_Setup.exe

http://lb.cdn.m6web.fr/d/c/a/d5621e0909012e7afdf4e918add29444/57327d10/soft/.../opera_37-0-2178-32_fr_18773.exe

http://dw.uptodown.com/dwn/2-7tdt3wf-uxZt40rUzcFB5aRxwlfTT6Cpe_MXj-PunmnMMISbZ1HG98oDBVpnQR_rcRocNhafnoNoTsO2l97kl9JipSc0fgBOBz2PJrv6E0Ig_gO7TuWXPhWCHNkNlT/UCbybk1Ty7Y6Pzlk_tK7qkk5ngb0roBqmGHasWfy-SA8fpU3XSEuCwmWtz3cyrD3pA30Ul7QAALwi8o4USS1vFxqfLR-lbTR9LcqyVbA8iNku5W6TnWt3ISDXAGUh9sT/.../

https://panel.fariya.com/fariya/softwares/1/.../Opera_37.0.2178.32_Setup.exe

http://www.tamindir.com/indir/MjAxNi0wNS0xOCAyMjo1Njo1NA==/opera/windows/.../

http://dl-desktop.oupeng.com/pub/opera/desktop/37.0.2178.32/.../Opera_37.0.2178.32_Setup.exe

http://41.223.201.246:801/.../Opera_37.0.2178.32_Setup.exe

http://113.171.224.208/.../Opera_37.0.2178.32_Setup.exe