setupeditpadlitebr.exe

DeployMaster

Just Great Software

This is a self-extracting archive and installer. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
Just Great Software  (signed and verified)

Product:
DeployMaster

Description:
Setup Package Built with DeployMaster

Version:
3.3.2.0

MD5:
517e51c30afa401f081b64d581152017

SHA-1:
64c221e8ab3a62054b75993e7987c3a8f0240aac

SHA-256:
3c1213d39a09fcb2fdfdd5c9dcbe62cadfe9209ebcde679f3a5d3c08e858018a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 6:56:24 PM UTC  (today)

File size:
3.2 MB (3,356,208 bytes)

Product version:
3.3.2

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\setupeditpadlitebr.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
8/31/2009 9:00:00 PM

Valid to:
8/31/2012 8:59:59 PM

Subject:
CN=Just Great Software, O=Just Great Software, STREET=165/3 moo 2, L=Rawai, S=Phuket, PostalCode=83130, C=TH

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00B165391BC4427117582E61910F3F2673

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:M+Vq4Ct8CslKe8ArFEnxAtU4velod72hh28javPT+PfdxZ9cwUih16MJvIuPD450:HJCGCs8RnxAtLiod72o2AwUk6WI2D4xY

Entry address:
0x8034

Entry point:
55, 8B, EC, 81, C4, EC, FE, FF, FF, 53, 33, C0, 89, 45, F0, 89, 45, EC, B8, 04, 80, 40, 00, E8, 14, BE, FF, FF, 33, C0, 55, 68, A4, 84, 40, 00, 64, FF, 30, 64, 89, 20, C6, 05, D8, A8, 40, 00, 00, E8, DE, FB, FF, FF, 68, 6C, A7, 40, 00, 68, 00, 01, 00, 00, E8, 7F, BE, FF, FF, B8, 6C, A8, 40, 00, BA, 6C, A7, 40, 00, B9, 00, 01, 00, 00, E8, 6F, AF, FF, FF, 83, 3D, 6C, A8, 40, 00, 00, 75, 0F, B8, 6C, A8, 40, 00, BA, BC, 84, 40, 00, E8, 8B, AE, FF, FF, A1, 6C, A8, 40, 00, E8, 65, AF, FF, FF, 8B, 15, 6C, A8, 40...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
29.5 KB (30,208 bytes)

The file setupeditpadlitebr.exe has been seen being distributed by the following 3 URLs.

http://gsf-cf.softonic.com/64c/221/.../file?SD_used=0&channel=WEB&fdh=no&id_file=11235&instance=softonic_br&type=PROGRAM&Expires=1460551740&Signature=Esl89exF1MEU80U~j-Udl58wX8PvGRspUChCntTDQhLFGnXoIuozJ70C22R-2C9iDNzJ7fGHEgrFS~LjEMpRPyEDk0Hyds3EiAjTLzj60cM3Q75dAMOPSPPoN-naks1NFRPQxqq4QgBxOTKI~3MFNFUHjycmj-OXcIWXCurimSA_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=SetupEditPadLiteBR.exe

http://gsf-cf.softonic.com/64c/221/.../file?SD_used=0&channel=WEB&fdh=no&id_file=11235&instance=softonic_br&type=PROGRAM&Expires=1448457476&Signature=VGPSikHeOj4dzhPBG-TKaeJ18mr6SFw~95zq6yvPqtzvV1b-NMQXHE4kx6hzSPhC409koz13LOvQ9RRkQ0OukNfbE~W-ii8r1p0uUMJ80cmuLkEWc3Qcds4LZhEgBPwVX6xz72nJROUFz1jJJJ1gI656OAucnrcPPPRr0cgmbAE_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=SetupEditPadLiteBR.exe

Scan setupeditpadlitebr.exe - Powered by Reason Core Security