SandboxieInstall.exe

Sandboxie

SANDBOXIE L.T.D

This is a self-extracting archive and installer. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
Sandboxie Holdings, LLC  (signed by SANDBOXIE L.T.D)

Product:
Sandboxie

Description:
Sandboxie Installer

Version:
4.06

MD5:
f3a36c0017d58b4f425135feadc56032

SHA-1:
6c0686be70a6084a65d1911292f8adde70bc836e

SHA-256:
cca6695b486f8e50f0a6b85531223bb1ad1bafe1897fb6d7fcc5bb70c0d00eca

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 4:29:14 AM UTC  (today)

File size:
2.5 MB (2,600,648 bytes)

Product version:
4.06

Copyright:
Copyright © 2004-2013 by Sandboxie Holdings, LLC

Original file name:
SandboxieInstall.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\sandboxieinstall.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
12/6/2012 2:31:48 AM

Valid to:
3/7/2015 5:10:09 PM

Subject:
CN=SANDBOXIE L.T.D, O=SANDBOXIE L.T.D, L=Holon, S=Israel, C=IL

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121D157F33DB2AB605536125B50FCF1D727

File PE Metadata
Compilation timestamp:
10/16/2013 4:08:26 PM

OS version:
5.2

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
49152:2DxHQzehVfnRY4Uj0DVhMvdJwGxe1bljoucxOb/yJk/H9wDHeb5ra:2D7PW4UjUhMNMjoucx+T1wqG

Entry address:
0x1542

Entry point:
6A, 70, 68, 70, 11, 00, 01, E8, 1E, 02, 00, 00, 33, DB, 89, 5D, FC, 8D, 45, 80, 50, FF, 15, 08, 10, 00, 01, 83, CF, FF, 89, 7D, FC, 66, 81, 3D, 00, 00, 00, 01, 4D, 5A, 75, 28, A1, 3C, 00, 00, 01, 81, B8, 00, 00, 00, 01, 50, 45, 00, 00, 75, 17, 0F, B7, 88, 18, 00, 00, 01, 81, F9, 0B, 01, 00, 00, 74, 20, 81, F9, 0B, 02, 00, 00, 74, 05, 89, 5D, E4, EB, 2A, 83, B8, 84, 00, 00, 01, 0E, 76, F2, 33, C9, 39, 98, F8, 00, 00, 01, EB, 11, 83, B8, 74, 00, 00, 01, 0E, 76, DF, 33, C9, 39, 98, E8, 00, 00, 01, 0F, 95, C1...
 
[+]

Entropy:
7.9572

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
3 KB (3,072 bytes)

The file SandboxieInstall.exe has been seen being distributed by the following 26 URLs.

http://gsf-cf.softonic.com/6c0/686/.../file?SD_used=0&channel=WEB&fdh=no&id_file=51980&instance=softonic_br&type=PROGRAM&Expires=1422542993&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=RoPYBoIy84OK~3Ij~6t2s1UpDS0PS15DMhCu-TZlZbka06FhGdE4YVVzNB18Hj0al4cmMseaSmOIaFRQbRAslmjqzjo7nrhzuIO9bGrXVNpEfKrkLOSG~3zKfvJr4TwZ097w~CMsRTywaTlK8-vrYr0buPwRVKYAWeTX0z7-FpU_&filename=SandboxieInstall.exe

http://gsf-cf.softonic.com/6c0/686/.../file?SD_used=0&channel=WEB&fdh=no&id_file=51980&instance=softonic_es&type=PROGRAM&Expires=1430786913&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=hGCHZ1bmcEpEmu4fzTMxHtfbsvHpAeHoFV5r1XF6TIEnSzjN8onRrVbt2NsEaGxf4XhkVM-ioUu0CGN~QWwARZYqdT-zDW53SCRwO7z~KiCD7UpjaUEWomHB0dailfcBKR7I2Nfi7QLZI4ZE3Au8sAxGpxmkVTId1O8sBTuFpjY_&filename=SandboxieInstall.exe

http://210.6.198.7/.../SandboxieInstall.exe

Scan SandboxieInstall.exe - Powered by Reason Core Security