setup.exe

DigitalDNA Games LLC

This is a self-extracting archive and installer. The file has been seen being downloaded from mmtrkms.com and multiple other hosts.
Publisher:
DigitalDNA Games LLC  (signed and verified)

Description:
Setup

Version:
14.0.23107.0 built by: D14REL

MD5:
1bce17fdf4e1658c39f76dd20e79d214

SHA-1:
06f7e5b38ffe6a222f74bd5de9827bc17a395154

SHA-256:
9d7499ce7f416c6e96e0ab243e68a2e84fae97d3bebf7c0b7b8b02b75b2dfc5b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:51:00 PM UTC  (today)

File size:
523.4 KB (535,952 bytes)

Product version:
14.0.23107.0

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
4/12/2016 1:50:38 PM

Valid to:
4/12/2019 1:50:38 PM

Subject:
CN=DigitalDNA Games LLC, O=DigitalDNA Games LLC, L=Kirkland, S=Washington, C=US

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
00C205F2BA282BB10D

File PE Metadata
Compilation timestamp:
7/7/2015 3:26:33 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
12288:PDPdsil5fCMggBIiMVO26kk+FGdeMb01JQntLOCVgUU:PD1s2ts96kT2emV4

Entry address:
0x330C2

Entry point:
E8, 56, 04, 00, 00, E9, 80, FE, FF, FF, E9, A0, 96, 00, 00, 55, 8B, EC, EB, 1F, FF, 75, 08, E8, 5A, BE, 00, 00, 59, 85, C0, 75, 12, 83, 7D, 08, FF, 75, 07, E8, 03, 08, 00, 00, EB, 05, E8, F9, A0, 01, 00, FF, 75, 08, E8, AE, BE, 00, 00, 59, 85, C0, 74, D4, 5D, C3, 3B, 0D, 38, A0, 45, 00, F2, 75, 02, F2, C3, F2, E9, 21, 08, 00, 00, 8B, 4D, F4, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, F2, C3, 8B, 4D, F0, 33, CD, F2, E8, CF, FF, FF, FF, F2, E9, DA, FF, FF, FF, 8B, 4D, EC, 33, CD, F2, E8...
 
[+]

Code size:
356 KB (364,544 bytes)

The file setup.exe has been seen being distributed by the following 15 URLs.

http://mmtrkms.com/mt/.../&subid1=Lemgr

http://install.oinstaller6.com/o/.../Setup.exe

http://ttb.myfiletor.com/download/request/.../L86z7d57?__tc=1449011398.522&lpsl=5cffa862cb1b1e13785e0f2fda98e6c4&expire=1449616172&subID=MjY0IzgwNSMxMDUjMzU5NHw2NDkxfEFSfDN8MXx8|4820a5c1-46cc-11e5-9a08-b82a72dfe694&slp=www.getfileex.com&fileName=Setup

http://www.fraps.com/.../setup.exe

http://launchpad2.net/setup.exe

http://castleminer-z.soft32.com/goto/file/id/.../

http://ttb.x9pbuoz.com/download/request/.../pnTfJshF?__tc=1414345861.977&lpsl=fa3a3fb43d6fca5407774dd55141c7c0&expire=1414432259&vurl=4802&dp=-_-Nzk2ZV8xNzNfNDA3NV80MTE2X0JSXzE4Ny42My4xNjAuNjVfMjg5XzQyNDBfQURT-_-ADSYS-a245cf3e-5d38-11e4-af39-a987613c268f&tgu_src_lp_domain=www.getdwl.com&fileName=Setup

https://github.com/SteamCustomizer/Manager/raw/.../setup.exe

http://securepccleaner.com/getip_build_lp.asp?utm_source=1072&utm_campaign=1072&utm_pubid=7430&clickid=AIaRlOlv0wgAA_-LLq28_gvbtp6vR6rRHAZ5m_WLPVMUAAAAAAAJAAE&campid=631165

http://ttb.myfiletor.com/download/request/.../tukoukBG?__tc=1448841440.973&lpsl=4285fb3f2b3905656c587683ef046cc2&expire=1448927838&PubID=download&slp=www.mytoolfile.com&ClickID=565b90dba88619e27f8b8225&fileName=Setup

http://www.fraps.com/setup.exe

http://www.techtudo.com.br/_/software/.../download

Scan setup.exe - Powered by Reason Core Security