osu!install.exe

osu!

Dean Herbert

This is a setup and installation application. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
peppy  (signed by Dean Herbert)

Product:
osu!

Description:
osu! installer

Version:
0.0.0.0

MD5:
4f83c053c369b4a3e87b9a441a388b18

SHA-1:
5d74dc2f899c7f258603c11c12a988ec903363ff

SHA-256:
29ccf723e8e8bd0a383cfe27264ce3aaabac6a2c1be30a1df07d8600ad72d34a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:04:08 PM UTC  (today)

File size:
21.4 MB (22,424,376 bytes)

Product version:
0.0.0.0

Copyright:
Dean Herbert

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
9/24/2009 2:00:00 AM

Valid to:
9/25/2010 1:59:59 AM

Subject:
CN=Dean Herbert, O=Dean Herbert, STREET=41 Gregory Street, STREET=Wembley, L=Perth, S=WA, PostalCode=6014, C=AU

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00F7BB79D56B7BABD579E03D10F37C845B

File PE Metadata
Compilation timestamp:
8/26/2008 2:56:30 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
393216:YzwkaESnZMpLtKQztbTwbJZpPj1mWkWhjD6c65OtCiQlDEIzTrqBuI6e5O/:YzVaESZ8wbfpE/CvZ65OwN9EQrw6e5O/

Entry address:
0xA5CE3

Entry point:
E8, 8B, E1, 00, 00, E9, 16, FE, FF, FF, C3, B8, 94, 49, 4B, 00, A3, 38, 99, 4F, 00, C7, 05, 3C, 99, 4F, 00, 90, 40, 4B, 00, C7, 05, 40, 99, 4F, 00, 4E, 40, 4B, 00, C7, 05, 44, 99, 4F, 00, 82, 40, 4B, 00, C7, 05, 48, 99, 4F, 00, F8, 3F, 4B, 00, A3, 4C, 99, 4F, 00, C7, 05, 50, 99, 4F, 00, 0E, 49, 4B, 00, C7, 05, 54, 99, 4F, 00, 0E, 40, 4B, 00, C7, 05, 58, 99, 4F, 00, 78, 3F, 4B, 00, C7, 05, 5C, 99, 4F, 00, 07, 3F, 4B, 00, C3, E8, 9B, FF, FF, FF, E8, C2, EC, 00, 00, 83, 7C, 24, 04, 00, A3, CC, E2, 4F, 00, 74...
 
[+]

Code size:
816 KB (835,584 bytes)

The file osu!install.exe has been seen being distributed by the following 18 URLs.

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1484179605&Signature=OHKUxFZHv1PqopzLk8EGfCf8~8uMhPTMh~elhxc5kVvtG2x36zgQVGXGE4AIJ98I4JVwtD-NFPEkAmqksLJ2f8LlB6aSajVHjfxJHWFCT8Tt00GpLNhMec4OjNgBqrHi6h7LCOD1wBv~lsq3wthr~vxMr4FKekOE1dBlzfHbMjM_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1471388766&Signature=GqLllMXSdfBlTt4c7mH30PCvQa1OGj~K-fm-2ScxFiNXlWbYxpE-zBpjcn9luRYUirMtqeS6NmgIDB2aF8jt5gid3qV9-vr97Yc1dSD9Uz1zkHntztYP-D7HDVAh0nG~BeJiomUD~nOgvF5OeX-M-Rsx4Se2dfs8udUXW7Ba8K8_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1473581266&Signature=YCPTyRzKBIU40pCNQo2iElIx19NKn6DMxoiJMhb2JRWwhE-CIDhYNKPpCk-TWXE2DMuGsBOgr2gB9KeS1B3LxiYbDuq713etp2pdwF-YHS1Z1UpwAuXwCaNdGndi211LzmtCbQiwtpPRAPscnKL6ThMb8t40qJGTIdrEnyFjc3g_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1477182822&Signature=iguGFaMoNRRc-6skn4KdQm2JiKiJ~kKSNNd7vsrcWeNsomjY40ZKa06GfyRA0z1vEgN5Sv16Ae4hO1zLQQLYE-PaIL7IKweL5qyAcVDSxezg1cLFz3nFmcBtRWjor4wEamJGjNzsM6IgAmFkvfUaSnEv9E0XCYPoa9iGrUvyNA8_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1463730475&Signature=FMn0c6o5w4ejWzhdQo5G6hUp2S6NvVcHs6vcBCfF9KqM3S3BKqcnrc~NIKzGoYP4aLUA5GF60GY1X~vbdarafljeD73wR8WSBzCPl~3esqbpFvLvk9krpJPLeNiMtCu7bRE6lGs31HNk3hnZils-h06eApaZpbrO3hi6X84qWeA_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1438581641&Signature=X-pItFnhRSDrceqDpZfrAO071Vq2luhwRGmRdjE643BajJoB2EeUVqlOoMEpD14LDdf9XUXmA3Omv6jNpi~dyICVKunBLPoPAnIulEqAlPxm5apTm1jCi5uyB2c~hCkxg4efq3U3kauklBQ2dHL3KHN~PXN4uR8i5uZ0EalrhkI_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1479257849&Signature=OpBs77Pd7XwUy74jT9yvhwQhaL2PqjQ1uA~ldXEWA7U-ES0d8RXhit6503QbDqYXJA5ui60bPv3CNQZflGGNGh-oK6wxiBElw1kKoW3-4ZOaV~sG1z9fxFFtNvt03DFcgM-f8UwXHtJl7NKoiY6HdJEyDDbSh9Ri~5p~YAImU~I_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1476935237&Signature=LunViulCpKvP4OYVuwxO4fWef8szTQO7Wo1~YiD89Q0~xTADpUTBqrHOhgO4y~m~XzW5u75AaJs49HnN3wekWj9~bTkAmKznMxY24AhI0ZsPHSfkhzxrtZ0IIMVyZoBlISxuxUeVaV5xEpjS5lTY~0pt~cAInBLsXBo9vcbwU0c_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1478124173&Signature=K1DZd2px0hVJ3y46sBSHyuej38-w-EPPAIqAtckQdgIP5sj1IZMVJEdfRbcAID5fHUfA0pxufyY9nkhuXGt9YH4~JWAj~UtIguPN9Fz-3dTQknxKmyTMCKPpMlhCBAJFVmdYx2nrCFg0J83W-egm9MNygcfa~AM8xQnIjCWjksg_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1471843905&Signature=IfTIxfheVCo6OOXlwoP8JmL6bHk8ecuoLvaLvBhUV~oOE4zeSImPyhRucAFDsP7PPbVmIyjpWbGekeEchfEkcPieJPqXFUN5TWDJfuYShLfz9nOE7Cx9hXZJNV49Ahny-DHoIC5le4~AL5m~O-as5Y6jXpzYv2b4UJlRshFoKN4_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1464679377&Signature=Rnzt-E69QPE2fkPWyRwwu5RMh-Oi4~flYRXTzz95HDnWdEfJqmro2a9OfuoQqjOMI9COYdVhz3kOPffg2lcEiiFuijZDRRGscOlsfnPVHtyHFTXkSzCEI4EXkDPa~O14zxTBTh73i6vULvGJmms-lQW-k97LMKUvbhzcvhh105M_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1475196494&Signature=V3NU7LcqYVWHg4~WIsl6M1cv8hfsWPcMtkKp3D2SfFuiv77LSZJSiUpqa3x9lTf16U8EjJM59LKju1yZR6nbaq1r8P5lCbuX9m7tvzMy90ZOHaWmvqUtNdeDg8r0RRtR6h~f3j3VLaDNaPgU-ZEJGe8aAP5hC8ftg2ONErw70xk_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

http://gsf-cf.softonic.com/5d7/4dc/.../file?SD_used=0&channel=WEB&fdh=no&id_file=66204&instance=softonic_fr&type=PROGRAM&Expires=1451884906&Signature=WPe0zXF5LaaTHCQVDi6DTzBMKlgqIm067ubPwIEf3ufIJPQtQpJOEYX2V4aLCxYXXnHcRVMNyrXiK2l532XLrC-VnlpDMvaCh7P7S5fzyFadnTrfCo5TYeoV03RTI5GGY-Zn1WF84PlxbPXV5ts0oILqj8FNcvtMqkCCa8LzQUA_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=osu-install.exe

Scan osu!install.exe - Powered by Reason Core Security