setupanimfx.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
MD5:
4a4e8dc9024ded105cf8745de21a46d8

SHA-1:
3ab1f66a3417cd55697916926131d3ed367873d0

SHA-256:
3d75538ce7f418f95d91b95ebda9651c256e6d183f502c7dad7b40e931c7b637

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/17/2024 6:10:47 PM UTC  (today)

File size:
1.5 MB (1,523,600 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
10/11/2002 12:00:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
3.0

CTPH (ssdeep):
24576:0niStlIck1oLsTDOyD7AniA8m4bs18XVuhSCwYiqIgT2yImAWERInj3gjwRcSF:0nielIVoLsGE7AiHXo1SV1Q0JRInj3gM

Entry address:
0x1650

Entry point:
81, EC, 0C, 04, 00, 00, 53, 56, 57, 55, 68, 60, 50, 40, 00, 6A, 01, 6A, 00, FF, 15, D8, 80, 40, 00, 8B, F0, FF, 15, D4, 80, 40, 00, 3D, B7, 00, 00, 00, 75, 0F, 56, FF, 15, B8, 80, 40, 00, 6A, 02, FF, 15, A4, 80, 40, 00, 33, DB, E8, F2, FE, FF, FF, 68, 02, 7F, 00, 00, 89, 1D, 94, 74, 40, 00, 53, 89, 1D, 98, 74, 40, 00, FF, 15, E4, 80, 40, 00, 50, FF, 15, E0, 80, 40, 00, 8B, 0D, 00, 50, 40, 00, E8, 68, FF, FF, FF, B9, 40, 0D, 03, 00, 89, 44, 24, 14, E8, 5A, FF, FF, FF, 68, 00, 02, 00, 00, 8B, 2D, D0, 80, 40...
 
[+]

Packer / compiler:
CreateInstall v2003.3.5

Code size:
8.5 KB (8,704 bytes)

The file setupanimfx.exe has been seen being distributed by the following 24 URLs.

http://gsf-cf.softonic.com/3ab/1f6/.../file?SD_used=0&channel=WEB&fdh=no&id_file=20031&instance=softonic_es&type=PROGRAM&Expires=1477764411&Signature=MgMIZPNn3QqAPIHCd~mBi197ZH6C9lyTNsOjAz8KxrqMIMbhhrR80ikhmIO8QcugX8baKZHKOYJOb0kBrLIIw6A9KIbeeRdizMTAn01JRotfo6qT3zpYMpfpqcTLPFy~jZS5hiOBwzb9VSjxNQSgvK1VKYSuJ~Y5B8zeha7us6s_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setupanimfx.exe

http://dw.uptodown.com/dwn/oWv9O9C8d9ue9115uNB0sVoxzw_Lzk2IPUjCYEsbfesokbeHVWB6AgJ59dPVqaxv4kVl1meJVxvNDih7Ix2b0HL1EUDDg6HXWnjQ1q0C4iKUc8nEMrhVQwHjUU39MQbn/HMlZ7SBJOoyF_vOsq2cxF3MQR_THoYAeDd1PvdSoqpVnbLB-zY18dE79_-PIK2B3xtuDF1Ty0K9mPqwYXIcrk4PdCCJzbHjKqq3dcafMCQhGTDjOllpmpuJ9-XY0qeAc/xGaLr4wxGWEGl4v9rKGJgMGEccZnOB6tbdirZo5OjUG_7t6Gk0T-olST7N1o44rRnVmpwKZDAxWT_1bEoJYxPmmgUA0mPizcVxnlkh_Q23gJCtu0Lm6eH7q8z_au1ru5/.../

http://gsf-cf.softonic.com/3ab/1f6/.../file?SD_used=0&channel=WEB&fdh=no&id_file=20031&instance=softonic_es&type=PROGRAM&Expires=1485068440&Signature=hhddH8iI1F9lAcODkQDaRuC9fZbr76amga51g36A5-x9blWnzwe0nZ9Lu3iW7trL9P3S0wI4ZBdfGougzfHx55CpTShOzqtYZR~JEoW4h~40tmw6ketBUlE15FEmk2TNYUe4Qlf8r6qjObMlCiYsGDJ3kGYLCbPA9NUgcn66vXc_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setupanimfx.exe

http://gsf-cf.softonic.com/3ab/1f6/.../file?SD_used=0&channel=WEB&fdh=no&id_file=20031&instance=softonic_br&type=PROGRAM&Expires=1463136910&Signature=VNKoxvGIaELSfYJFGyDW1Pv6zN6Lp~2l3gkawOvD8HrBelXGnOcEqPq16Qz86LhzV93al8hpl6yxh9PsQJqaLEa3IpBeJLjBcrXFfARqO9vtZ8unjzw8fXe0as~uuw5zDejoHAyQZr8fp~QnBiTuSk8MpHqzxlvMUKimTNRx-lg_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setupanimfx.exe

https://d1ob5g40gc5b6g.cloudfront.net/2/12866/.../setupanimfx.exe

http://gsf-cf.softonic.com/3ab/1f6/.../file?SD_used=0&channel=WEB&fdh=no&id_file=20031&instance=softonic_es&type=PROGRAM&Expires=1478934527&Signature=S21GRRF9uVOfP6kuhr3ZGcWg2am6zpN4-Sk11GwWVdqqmz4V2vJOA~kPnut676Y3FYg37iyn8Xph9nKjkuVRuKgs7n23onHUX8dno-bqbJK~9B11KO7NCbKW~RvW~y1eBNHypP2-mhZguybgN0FmObDondykt8ef2kXnqllwK5I_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setupanimfx.exe

http://gsf-cf.softonic.com/3ab/1f6/.../file?SD_used=0&channel=WEB&fdh=no&id_file=20031&instance=softonic_es&type=PROGRAM&Expires=1481962683&Signature=aYkrNtKn~u3rBJZT3Crg~UI1lpKIVF3~WR5Iyh3LxKNVBKXFtpi24-Oslb1IBchQjp2E4WXsHkgJiMjd6YsU39TIkiQcla8DgVrgrwqbr1WbJxZdWlcALEn9-gB-r5Ys-8B7WJ3L2vtU8jERc3cfQaZYxe2WNp-otGWfU6Shlts_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setupanimfx.exe

http://gsf-cf.softonic.com/3ab/1f6/.../file?SD_used=0&channel=WEB&fdh=no&id_file=20031&instance=softonic_en&type=PROGRAM&Expires=1453029607&Signature=OM0SM6rd976aEZ2NbmFYvHbvzIvXxpBVWM7yz7fu3XFKLh4nyNBVftnTqLwb7zyDRjJhTaao-ItJdvq4k0SK2VjwgE~nCjkN9r5fF6ZfYcf7W~DmX~4UY8JNjH-ZKk~Ayz7IgyLa2OUGnxxJKlWFd6Ul3yBbbw2Ketui8Ouw4AM_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setupanimfx.exe

http://gsf-cf.softonic.com/3ab/1f6/.../file?SD_used=0&channel=WEB&fdh=no&id_file=20031&instance=softonic_es&type=PROGRAM&Expires=1478665837&Signature=Z1ypGajKJTUHVWs4K~nwZAaF4Uc3eOMucgHPVg8zvi7BGvy74Eb6VWoYKXD36Q4HZsNJbUx6vAc7T7njZt1Uy62lW6k6rtV3JzSfphkkKfM3wAyHSSWho0HDhOrJgrh3fC5jSnZ6OVftOXepOz0BbDzdhIaj0SXD0rxxaDGM8AU_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setupanimfx.exe

http://gsf-cf.softonic.com/3ab/1f6/.../file?SD_used=0&channel=WEB&fdh=no&id_file=20031&instance=softonic_es&type=PROGRAM&Expires=1460261240&Signature=hA7XCTLiLlUlQwn9pNUD1gZQim1K4L~ZKMaUjFPJ96aYBqAB7FFvkQVyqVaqTOUvyB4RCOnrTN2y3mWy3wJV9HWeebqnZLzzC8xBqnCJ4xK4flyyHANrzCEdGS0Ud8zJlilHSO-I5mLEeHzWjJKYi~DGenZ0K8F1omLhjHb8FpY_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setupanimfx.exe

http://gsf-cf.softonic.com/3ab/1f6/.../file?SD_used=0&channel=WEB&fdh=no&id_file=20031&instance=softonic_fr&type=PROGRAM&Expires=1478917923&Signature=Bgy8wJRZh7E3Hs6J1oU5FR33GGVGQV5r-uUW2gMCnDdKGkqLYOKZVAtHVi1r78RsA0XdUeaeR~TZduxL9w1V2GFebGF3HEf~AgwNqep8o1obsH8hF33clI8URWXnswOGXoDFXppHVszc6w~22lozjPEWa0zvSwtR4aRN-grxrcg_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=setupanimfx.exe

http://dw.uptodown.com/dwn/f7gFAEJ5YhlF3h4Q2TXzURbjPsW8oHZNtDdkr2D1quXY-tB-1WFakhFydn3tKr06UP2pxX1pCBFM_Or8eoO8b72MvdFKOlWr_4edorAmKTTYGIQzJYAkEnTUdrCK171k/0NtUxmH7HXUhbe_3pCHofXjmK4EMFJLXWYqE6UNznUOJV_QomQDiaKg_OefijwdaTSC9qkRaE9-BCyaTaH-2JEcKH4fBI8PC4uXOrN-WP58VmynDT-jg4E3U61NmyVCH/OR1vNEBj4SrJUxPKfUbviaZmSBqhbd3KNxSN1_BJnv-fNQm9fCoMYPDhivJpmCwW72OYs46fUp4r-rl1YNne0eNGOZQsMVAgAPX4FEDLjRkJ1QSx11eN4Bx-uMvp8hIX/.../

http://anim-fx.softonic.com.br/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAPm/.../oojv1EBHg96 muqDvfa17ydaEngj ki0NHdwmPWKo=

Scan setupanimfx.exe - Powered by Reason Core Security