SandboxieInstall.exe

Sandboxie

Invincea, Inc.

This is a self-extracting archive and installer. The file has been seen being downloaded from indir.gezginler.net and multiple other hosts.
Publisher:
Sandboxie Holdings, LLC  (signed by Invincea, Inc.)

Product:
Sandboxie

Description:
Sandboxie Installer

Version:
5.12

MD5:
2f5dde6da28022e1d8d38851aea26c00

SHA-1:
39d260af5e71e56ff557274b04a0d1742048ddf7

SHA-256:
00e2c41d0acea08b58488d2b0f35eba285a3f674443c3b3ff9836989f37252c4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
9/23/2017 5:26:52 PM UTC  (today)

File size:
8.6 MB (8,969,872 bytes)

Product version:
5.12

Copyright:
Copyright © 2004-2015 by Sandboxie Holdings, LLC

Original file name:
SandboxieInstall.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\sandboxieinstall.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
3/17/2015 8:00:00 PM

Valid to:
4/17/2018 8:00:00 AM

Subject:
CN="Invincea, Inc.", O="Invincea, Inc.", L=Fairfax, S=Virginia, C=US

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
05DE398F4AC5D00E254C9295F336CF4F

File PE Metadata
Compilation timestamp:
6/14/2016 6:06:46 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:XHCCnWYV8hZBp3lDP9FEkatKDtnFN4j3eQ45egGZJN1rNr0XOJ:ytdhZvlTMQDtFc3q5egYFOeJ

Entry address:
0x14B2

Entry point:
E8, 45, 17, 00, 00, E9, 1E, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 8B, 00, 81, 38, 63, 73, 6D, E0, 75, 2A, 83, 78, 10, 03, 75, 24, 8B, 40, 14, 3D, 20, 05, 93, 19, 74, 15, 3D, 21, 05, 93, 19, 74, 0E, 3D, 22, 05, 93, 19, 74, 07, 3D, 00, 40, 99, 01, 75, 05, E8, 95, 17, 00, 00, 33, C0, 5D, C2, 04, 00, 68, BC, 14, 40, 00, FF, 15, 64, 80, 40, 00, 33, C0, C3, 8B, FF, 55, 8B, EC, 56, 8B, 75, 08, 33, C0, EB, 0F, 85, C0, 75, 10, 8B, 0E, 85, C9, 74, 02, FF, D1, 83, C6, 04, 3B, 75, 0C, 72, EC, 5E, 5D, C3, 8B, FF...
 
[+]

Entropy:
7.9892  (probably packed)

Code size:
25 KB (25,600 bytes)

The file SandboxieInstall.exe has been seen being distributed by the following 50 URLs.

http://indir.gezginler.net/i/17550/.../

http://indir.gezginler.net/i/17550/.../

http://download.m5zn.com/Download-Link/19444/.../

http://filehippo.com/download/file/.../

http://dl.cdn.chip.de/downloads/.../SandboxieInstall-5.12.exe

http://filehippo.com/download/file/.../

http://lb.cdn.m6web.fr/d/c/a/f82660fa2ffe9d788d8348b4278d4502/57d051ba/soft/.../sandboxie_5-12_fr_41991.exe

http://scdn.softfiles.ru/rozu2.html?sect=1472806737&parameter=Sandboxie_Rus_Setup.exe&secl=9gzZJKva-cX1iK63sf1lGw&clr=1

https://dw.uptodown.com/dwn/nNswVA0AVEw9wGaPj1GrzOA9nET2avnDsPsor4Sp3lglgcPLIlDk7LiksHf3GCV0vLgMNhEdvo9WoEhhzaJj0bc93MfG0k5Drp03h2LvRAh_PODEzpoOlMUb4tERGCwM/_ZjR3XipDLt5zAaykZhPPdvwEP9y7x48HMRQLwUS-_4rRAk-mFWoIz99W75AYefLfUelRwi1EuI6BKVyB32YBwnh1QPfHHDnIYAMYCk02ezFelMJ_yWtdpu8r96_W4tZ/.../

http://filehippo.com/download/file/.../

http://download2086.mediafire.com/rcrpeh4nm6fg/.../SandboxieInstall.exe

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://www.downloadcrew.com/?act=software.download&id=682&t=1473974146&c=71cbc73f3a1a59821a6e6721162b0ca6108f07ef

http://www.raidcall.com.ru/direct.php?url=http://.../SandboxieInstall.exe&uid=35179323&param=hHmiUDPnfunE Jqs5GFbLSzfimf5QSpYxBF2Opam1gaLszPlItpQBfUCPmIGU4OJ6tKrG x0rBA=

http://i.download.idg.pl/fannef/8d77e8d521282cbe8834eed2079314e9/57ea6e15//vol2/w95/bezp/.../Sandboxie_5.12.exe

http://soft.oszone.net/download-file/.../

http://dl2.filehippo.com/.../SandboxieInstall.exe

http://filehippo.com/download/file/.../

http://indir.gezginler.net/i/17550/.../

http://www.techtudo.com.br/_/software/.../download

http://download2086.mediafire.com/482qhx3327ng/.../SandboxieInstall.exe

https://dw.uptodown.com/dwn/wa8UcYO1cj6_lHKoK8Y8c8mlAKmyXBOSl3unZYM3Jv16Tb5EajvPm0kzxZORI3LkRP5uBeJY-TCcwQC8ht69YmS4dq8TbqHA64DZdIn7uUKLrCCcR3nX3tv-OZFZh3Q5/O33asL4xPBs-HVzuABDA0E2QDpcu3bc_B6gpjettlZ2-Sbj3mbuBK8ozTFmMYM9gNupeZG0kAHOzGN1BYcS0Z06VopxJzFRXTv-feZT4OaljN5Hx3W2fg_nbJgrTPhA_/Fxpd7fzwvK2bx75OEurIWP_6SXwfUIWKl16dHe3a6OEPbqM_JMbuws8FBnmxXqObZOuq3zXz6Q-CYRei7RrotkVsxHo9U-48RhYVWCtWQlRAMe5Djz6j0y9Uj0RWnIa6/.../

http://ultradownloads.com.br/.../2,1177769.html

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

https://mega.nz/persistent/.../Hh5jiJCb

http://indir.gezginler.net/i/17550/.../

https://dw.uptodown.com/dwn/Wp3AVP7UaIAfKzsexhO3NBMBH_V8T1d0cSsBJNwlDpQxSPOF8Mx7wBcoUQ7ESMLoav4qWnwpJ0qUbm_DPO7ZfJV75qWwTUCSGc19H7v8KM88h38pIDC1SyiqNlTzjReF/sQICTsAgGxZP41eOK5mAxKGpzBkj2SPxyzQfAjlloNAWg0ITTf-a0BARpJPo6Kq_QbrOVthuqSD6eLENEB9hNq4-MSAORYnRaHLScMxJWItKQlB6dwJ-WOwcjmEwSTk0/.../

http://adf.ly/O=GUNGoedlH5RCwbOsiF8Gvddz35dW3SLlnlNGhebvmJRGiZbu3Fh2pUZvS052jb

Latest 30 of 60 download URLs

Scan SandboxieInstall.exe - Powered by Reason Core Security