setup.exe

Virtual Earth

Microsoft Corporation

This is a self-extracting archive and installer. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
Microsoft Corporation.  (signed by Microsoft Corporation)

Product:
Virtual Earth

Description:
Virtual Earth 3D Install

Version:
3, 0, 808, 29001

MD5:
1cabd3b460c82bb03e6ac30f250d5df6

SHA-1:
1215e06706e60097d2494c7bc96ea49b99726c4a

SHA-256:
df923cb41f5efa4c981689ff0c91d7ee6ec38c64a4decddf415328d9ce721765

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
4/27/2024 1:28:23 AM UTC  (today)

File size:
1 MB (1,100,296 bytes)

Product version:
3, 0, 808, 29001

Copyright:
© 2006 Microsoft Corporation. All rights reserved.

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Authority:
Microsoft Corporation

Valid from:
8/22/2007 8:23:13 PM

Valid to:
2/22/2009 7:33:13 PM

Subject:
CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
610F784D000000000003

File PE Metadata
Compilation timestamp:
8/29/2008 5:35:52 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:T5qJ3uZ00+7SulxbMjLusIQmKXLKmGiHWa4Qcxhe:T5e+SJtfQf3llvHWhQcm

Entry address:
0x210DE

Entry point:
E8, 02, 60, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 53, 33, DB, 39, 5D, 14, 75, 20, E8, CD, 1A, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 70, F5, FF, FF, 83, C4, 14, 83, C8, FF, E9, 99, 00, 00, 00, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 3B, FB, 74, 21, 3B, F3, 75, 1D, E8, 9D, 1A, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 40, F5, FF, FF, 83, C4, 14, 83, C8, FF, EB, 6A, B8, FF, FF, FF, 7F, 89, 45, E4, 3B, F8, 77, 03, 89, 7D, E4, FF, 75, 1C, 8D, 45, E0, FF, 75, 18, C7...
 
[+]

Entropy:
7.6338

Code size:
231.5 KB (237,056 bytes)

The file setup.exe has been seen being distributed by the following 11 URLs.

http://dw.uptodown.com/dwn/Eq-k4MLuhGxqfm6xS3Yi13jyip5Ib0PoSJG05niERHGutBltEPjygEQo2rfT3-Wpt9xCAz_1dTkzPyJ7iwaGwHFaG9Mv7WFvFHkq458FNOEPFE7_nOG3hGiEHBNMjx1x/Z4oR-XNVj-5w39xWxwliW4eGm7F9PMFWH86ZsfC4OYQZgW6BMGCBURNeEIEgdaccAINdupfUhhnInzQ_tPdlUg-Hu8ycJmYJRlovIy8ElmnWsnPPbHf62Oiq7P14p7Cd/Gpse4DV2jxX38ntU-YQ-UEP3CU7qqsyBbKfV360MYasL-KD-t74ehHNWG2cs6F8er_ver_zPZyj4v2bE1GAfFFtPQ0vxlpwuzWGyxI7EZeuJFIp8DSIptyhyss4N3YVF/.../

http://dw.uptodown.com/dwn/YVuafImDnTMCYAk4reBAHwdcbuKJ3TDcmC7pL797W1c0BMt9HSYPLYjnj7-hnoepWRoI8Z6U8nxeAdgv_RY9SsAbcuk6ECLhBmU_FXq25YzgxOBOAgTic_ZHJpyXu9Hj/wakKYAFzrmnGHNfshOT7ahpDmEwFWvt_OjGGh3lwRwRC4TvSSoLlQ3KngzL0DQzwQJJkOWI1neNDZvtNk1uVjVqcTt9cbRJdfNhDCr6FTpesgMCnEuwcXY1XxgV9ff-d/FWe7ZgfaLkZ7eNb61U9E9PakcQ9ZBrXzqb4W6Wl_QgybO2J4ICSXq_-zmOJOoDQeirkz3k3uoRvgxcmgxcvKTIZS6qoV7_5OFndhQ5OqW7SgtKbOG6wb2Tl53xtHo_5c/.../

http://dw.uptodown.com/dwn/H7pchrckzXhiAcJVUDz_1BX2eHeFmDu5Nb4Lzv9eaSZ27mz6GBJh5Zl118VY0ap6agfpGOU9ecwOzmaJ4J474lpXcIoET1fhFun4MaRJdKEQni5gPfyEotU5m_mm0aGW/8p1STGXPQoFXNMPKUWyPytC-hBUK9szNrbgL44RzfaV9jpKKzkFIFR5WbL6SxyLtEzkVdMaozL-ByFoq00S_APoo8EaRPP-NYO6UumxRlczEWHi5GcImopuu3eg3VcBX/LCaPf1B-w7813l5FrUbLXcRcMzpAIRqKp24XoKdQrv6i2T-TClVdZbJLeKEfznVFPsywXtF_JrWxyOS1Lxr77XvkKgCRrDMuXOpcjuSJuD_8ndF4smB5m56Nianz2QI_/.../

http://dw.uptodown.com/dwn/a6RK9FpIdk5Zbwl0dc_flgDDVV8OcMRWMybAYK3clTjHcaie_zhjReaqw46lEB0tpGpMvLCtXK2kOLVcrQmEjn9ZW8dEd6SMmG_s3i__6AjjS_RRUxYiYYkijqOapaPZ/82uJlCkbTf84ELaSW4843wtyNXD96Mh2PFWd-izmz4Aq7EqN4CPxYugw3vX2vKvvvGvDIVILGzoPFHxvjUhgmlZltzhu-EP424kbdwozph4r0_OWeAVjIocF9EQWcHGI/NF0TQ3xHkBE89fS_8hBKKmfXHcD0yNqIHELZ-UMQ0078bLcKT-mqheaxHeB2z40LLjz80IlAh7IjR8TCneudKK1yIHbhiNeeYze7Q_ltJR5A85hQiJnqhb7zBahHXIz5/.../