rfflowtrial.exe

RFF Electronics

This is a setup program which is used to install the application. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
RFF Electronics  (signed and verified)

MD5:
cfe45971b953b925d6c5b28cf9a5def4

SHA-1:
674b84e36f0f32a88ec05b823e84d45a7d9685c5

SHA-256:
84cb6c5e928fab0dd6705fd18956592f5b2fe27a9646ff627e013105e4d6ac17

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
8/13/2025 7:38:23 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.Packed
1.3.0.6979

File size:
4.5 MB (4,741,080 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\software\aplicaciones\rfflowtrial.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
7/1/2008 7:30:00 PM

Valid to:
7/21/2009 7:29:59 PM

Subject:
CN=RFF Electronics, OU=RFFlow Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=RFF Electronics, L=Loveland, S=Colorado, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
605C9F050C188235B00E4D6C1C3BE507

File PE Metadata
Compilation timestamp:
7/23/2007 1:00:02 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:SvNPsv5JZKYO3WzthbZQUvtgOst0C0sCT7N6CjPux5WIF:Svpi3ZZO3WzTHt40CTCT7N7PuF

Entry address:
0x7EB8

Entry point:
E8, 19, 28, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 83, EC, 20, 53, 33, DB, 39, 5D, 10, 75, 20, E8, A4, 15, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 35, 15, 00, 00, 83, C4, 14, 83, C8, FF, E9, 80, 00, 00, 00, 8B, 4D, 0C, 3B, CB, 56, 8B, 75, 08, 74, 21, 3B, F3, 75, 1D, E8, 75, 15, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 06, 15, 00, 00, 83, C4, 14, 83, C8, FF, EB, 53, B8, FF, FF, FF, 7F, 3B, C8, 89, 45, E4, 77, 03, 89, 4D, E4, 57, FF, 75, 18, 8D, 45, E0, FF, 75, 14, C7, 45, EC...
 
[+]

Code size:
60 KB (61,440 bytes)

The file rfflowtrial.exe has been seen being distributed by the following 3 URLs.

http://gsf-cf.softonic.com/674/b84/.../file?SD_used=0&channel=WEB&fdh=no&id_file=49865&instance=softonic_es&type=PROGRAM&Expires=1477441114&Signature=RlE2-xD4moKIqDGkKJ9n8TSLf5QT08Qe1AxIUf~l1PyLLUXTDRuPyvl6XD8NoVIcdqfYObBjaFi5rtPOAcf5u~IP3WIAS9lTl06Oo3mN-~Nkz1ET61Go0E5~RHwXtW0~rOTmpL9LcEjrfcACoS9XwM0RbJ-NnkKM5Mi7hhjntrQ_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=RFFTrial.exe

Scan rfflowtrial.exe - Powered by Reason Core Security