SFXCAB.EXE

Self-Extracting Cabinet

Microsoft Corporation

This is installed with multiple programs including Windows Internet Explorer 7 and Windows Internet Explorer 8. The file has been seen being downloaded from internet-explorer-7.tr.softonic.com and multiple other hosts.
Publisher:
Microsoft Corporation  (signed and verified)

Product:
Microsoft® Windows® Operating System

Description:
Self-Extracting Cabinet

Version:
6.2.0029.0 (SRV03_QFE.031113-0918)

MD5:
ea16789f6fc1d2523f704e8f9afbe906

SHA-1:
d39b89c360fbaa9706b5181ae4718100687a5326

SHA-256:
bf5c325bbe3f4174869b2a8ff75f92833e7f7debe64777ed0faf293c7725cbef

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
4/25/2024 8:38:06 PM UTC  (today)

File size:
14.7 MB (15,452,536 bytes)

Product version:
6.2.0029.0

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
SFXCAB.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\sfxcab.exe

Digital Signature
Authority:
Microsoft Corporation

Valid from:
4/4/2006 3:43:46 PM

Valid to:
10/4/2007 3:53:46 PM

Subject:
CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, OU=Copyright (c) 2000 Microsoft Corp., O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
61469ECB000400000065

File PE Metadata
Compilation timestamp:
6/28/2005 12:55:01 PM

OS version:
5.2

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
196608:q707iVcZ1FT76pRYxO7PN34al8oyHQwRnDGi85wYu8vdZ+k/J3NJeThXfXrr19IN:q76ZXFIV4a21Dt8xvdgk/5sl/1aY0am

Entry address:
0x5A45

Entry point:
E9, 13, FA, FF, FF, 8B, 44, 24, 04, EB, 17, 80, F9, 3B, 75, 0C, 84, C9, 74, 14, 40, 8A, 08, 80, F9, 0A, 75, F4, 80, 38, 20, 7F, 09, 40, 8A, 08, 84, C9, 75, E3, 33, C0, C2, 04, 00, 8B, 4C, 24, 04, EB, 05, 84, C0, 74, 11, 41, 8A, 01, 3C, 0A, 75, F5, 41, 51, E8, C0, FF, FF, FF, C2, 04, 00, 33, C0, EB, F9, 53, 8B, 5C, 24, 0C, 56, 8B, 74, 24, 0C, 57, C6, 03, 00, EB, 0C, 56, E8, CB, FF, FF, FF, 8B, F0, 85, F6, 74, 2D, 80, 3E, 5B, 75, EF, 8D, 46, 01, EB, 0A, 84, C9, 74, 1F, 80, F9, 20, 7E, 0A, 40, 8A, 08, 80, F9...
 
[+]

Code size:
30.5 KB (31,232 bytes)

The file SFXCAB.EXE has been discovered within the following programs.

Windows Internet Explorer 7  by Microsoft Corporation
Publisher's description - “Internet Explorer 7 has been designed to make everyday tasks easier, provide dynamic security protection and improve the development platform and manageability.”
www.microsoft.com/ie
1% remove it
Windows Internet Explorer 8  by Microsoft Corporation
Windows IE8 (Internet Explorer 8) is a web browser from Microsoft. IE8 contains many new features, including WebSlices and Accelerators (Accelerators are a form of selection-based search which allow a user to invoke an online service from any other page using only the mouse).
5% remove it
 
Powered by Should I Remove It?

The file SFXCAB.EXE has been seen being distributed by the following 50 URLs.

http://internet-explorer-7.tr.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fm6aPn6SjkpY=

https://internet-explorer-7.ko.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fnKWIp6WomZY=

http://filehippo.com/download/file/.../

http://internet-explorer-7.bg.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fnJ-Opp6fkpU=

http://filehippo.com/download/file/.../

http://internet-explorer-7.th.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fm6ePpaGomZU=

http://filehippo.com/download/file/.../

https://internet-explorer-7.tr.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fnKaIpKGgmZY=

http://filehippo.com/download/file/.../

http://gsf-cf.softonic.com/220/6c4/.../file?SD_used=0&channel=WEB&fdh=no&id_file=48797&instance=softonic_en&type=PROGRAM&Expires=1478728603&Signature=P5vzH5zepWei7SYu1sZKE~000Z7iosWZwH6DlFecDCFTndeyD74F1RRRz4fidqAB3UKaeIkLwruQALTXd7KlyncnC6JDOS0ZMiii2nkRH~e1ZxPxBr1FRG4tmubSwi6QqOz9oFXFsYlq51VqtfgkftW8efsSx5LoQfeK56ZBBvs_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=IE7-WindowsXP-x86-enu.exe

http://gsf-cf.softonic.com/220/6c4/.../file?SD_used=0&channel=WEB&fdh=no&id_file=48797&instance=softonic_en&type=PROGRAM&Expires=1483655006&Signature=QJ55TnYCFfcXWvsHB-zbqCfbqYdrNv0jXfzI9b1Dgx3~5L6WxCnItbWT8Wa2RHBWjXExz1z5FoYqY9b9BmO1~mvEa4Kd5av3yOq1En0JoQfrl8SNCmKk-EejBeMH2J9hhVd0wCJ3W-Ice3AS6Z0b-mZZo-XR4YrAHot97evf0FE_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=IE7-WindowsXP-x86-enu.exe

http://internet-explorer-7.ro.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fm6CIn52jkps=

http://internet-explorer-7.ar.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fmaeLnqKgkZU=

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://internet-explorer-7.ar.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fmqCNp6Cfl5Q=

http://w6.mien-phi.com/Data/Soft/2013/03/.../IE7-WindowsXP-x86-enu.exe

http://internet-explorer-7.th.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fm6SJnqCnk5U=

http://internet-explorer-7.ar.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fm6iNoJ6lk50=

http://internet-explorer-7.ko.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fmqKMoaKlmZ0=

http://filehippo.com/download/file/.../

http://internet-explorer-7.tr.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fm6eMp6Kgl5o=

http://internet-explorer-7.ar.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fm6WJpaCilZk=

http://internet-explorer-7.ar.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fm6SJoKOllpY=

http://internet-explorer-7.ar.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fmqWKpKOkkZk=

http://internet-explorer-7.tr.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fm6aPoaOlkpk=

http://internet-explorer-7.ar.softonic.com/start-download/.../95d1aec3e801f1e54ffa563c3d79111d

https://internet-explorer-7.tr.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fnKKKpp2nk5Q=

http://internet-explorer-7.ar.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-fmqCMpKCglJY=

http://filehippo.com/download/file/.../

Latest 30 of 161 download URLs