supersetup.exe

SUPER © v2013.build.58+Recorder (2013/11/13)

eRightSoft

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from soft.archive1.clubic.com and multiple other hosts.
Publisher:
eRightSoft

Product:
SUPER © v2013.build.58+Recorder (2013/11/13)

Description:
SUPER © v2013.build.58+Recorder (2013/11/13) Setup

Version:
2013.58

MD5:
a3de1e736fe2fcb8f07a5460f32bdc56

SHA-1:
d610cb63abf9138f6c8fe82020278eb7015c18aa

SHA-256:
49903c353503b620fa404fcedb7fdbf7b6bedceb6cd13cfbe71cb20d89fcce1f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/22/2017 10:00:45 AM UTC  (today)

File size:
63.5 MB (66,629,190 bytes)

Product version:
v2013.build.58+Recor

Copyright:
ONLY the GUI is Copyright © eRightSoft

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\supersetup.exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
1572864:D+eA1vH/5CHKnq1kXTjCtcSAGltm0F3OnfKne5r:DBA9BCHKqe3Sf9sf7

Entry address:
0x9C40

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 86, 94, FF, FF, E8, 8D, A6, FF, FF, E8, 1C, A9, FF, FF, E8, 53, C9, FF, FF, E8, 9A, C9, FF, FF, E8, C9, F2, FF, FF, E8, 30, F4, FF, FF, 33, C0, 55, 68, FC, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, C5, A2, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 96, FE, FF, FF, E8, C9, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 83, CF, FF, FF, 8B, 55, F0, B8, E8, CD, 40, 00, E8, 32, 95, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, E8, CD...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file supersetup.exe has been seen being distributed by the following 6 URLs.

http://soft.archive1.clubic.com/files/b1bd6337e008fc2395725c2af4c8b201/529e39bb/.../super_2013-build-58_fr_19891.exe

https://public.boxcloud.com/d/.../dTvAWFSA-FVhGFAkjEH3OFxS3ZYTfto8-P0MV46zO1s6m_fWseCgMYooJEJNGjmTL4zq1TlUmH96R9BlqywqG6_QZMpqvdm3vqmKl4byI5kPKVSSPosDWMYQDSnpeAXOyRvA0WkcN8HbohgN0f82gs-4Xyl8QDiX9EBKX8ZWnOx1E9VZo4qq2MD5YlevP-yQPTGk3DxJFrIeNvSV2_y9DxvnBhaIHa7d52VvjteuTHbvKAiHC1bQACJ_KhFpagiSPj3xH382qafVtW8auobrF20gLRT8-wFjHbkmgHc9ENENAF7FrlAxH3tDlPSsbp6STGffJ-53eghPtiv2LQ0y-ILjD4XkWgpX_qdv7AcFH6PhopM9n2J-7NHAniV70a_o22XbzjLg6PJJ541bJ5PBjX1gB3wkGi9AH6V93IQPe3B4HYlrb_pNjDqv-D2WPwbj15tHn2IpFDgc92WrFknyoJD_CzIjSiKbB34M5Cad3h8kgL82BtACk0wQJTZnpc1ePstFZnfl0UyBGvQrO0mmSGejnGcKL4Haixa2uwMeflmmXJMguZBZE65_KaeVyC_5MqN0JVKd6BFTEdU0AeO7217ykHulW5p4j33lQLjm6Q16VdNW2EAJgiQdldvuK9uBjtHvFy_wNRxQQmYK6lfBNwD8cPpSS4nsa210jrD9YQCHMLqjsCS0z6BYLQMZqCdigradALOV3zv1AlqJi6B3RbWoreiPa32IwDJFLFFGF1kWdExGesUvQiwdRYJLrSF6-7zqv8QWRC7P7q4WbgG7JDSex7RFHmB94OQ7EZiWkKYkRMJ334mU8KKHKTU_oGTjTT6iXkX-ut-q6jmoIZrsDQX07jToncBQxvoWeJGLx2Q5XBgipgN2YuVIzJwRDxMr4Hbcdhkm7z0T7EHMl_uy2xbcoqZsaog9oRIJxcTqUO9dZeRuJMceL8MAMt-5TkIkF8nxO7d4

https://public.boxcloud.com/d/.../nzgw2O5rJBJ8qaaZ9fypyJrItNvap3Ib1b-vv-550TZz0RowrMP2o8SABUB4YeJlugLPrB5_AoI4L_KP7W32HW-uJD01Qny1JhEJWfH_Q3TGPSW_LnMATgpEEk4D_JHPfCIHKBs8S-8Ama271I1crp6fOOI9d8NyQau-WXKC24qEwmpfv51G1sZSStQcna2iFCH0vq5AaHezfE2WcYL6A3yQS318LUYSU-hmBvmAG7vkbCs_nzXwPIM307dKc80XY8eMotmnZVQw0u05xjZYCkubvgtKC7dXIZs1JYa88Tnbt9SNT3pDxKM0EADgqzkf42nb0OVJaUqArwNNeYJnUmoaGuNPDQcTMt_XMFi72OdjjkWAmD3SZTY7ZOYGm76wtSH8OqSF9oUahQUMabZpUGbWRpvDji3qlFnTBOr0dMeQsAwKw27DlmcT_3-6Kyt4_9yYPyssmzT3UO9KpaGsPjXB705bQoLxfJh7WObv5J-BuqiaAp765UeaSkBHie1QuyJpPON3IWm3jVah9p6bvjfzb0yNgENUlA7XcFh9NZtHVIE1zZcobu-Th53ARvSrikpv0NCJbbsxRy-37flAjta2eCxX0sx-qCOAQbyVxFeOaWBpRcVZ1uvwIpY_WRCvRI5zdiAy07rR1VnGO4c-iJOLN2uF1HrDrNeqpl1x1G_xXjpbrj5I359vwVPFBx5M6Cs7Lt5FtXYbkr_nvTRzVIKYIQT6nofoNIX0sA2sEviY5gu9xfDygSQdLv68T_U9MbtaYbZxwPirBIgdTp_sqELUmSqbQaP_hSNoauUuu7BKkr6h16kbVz1kfNdZI0Ry-Uivx_vfyM6zK96tAucRtpJV5UM3XMvMa2te1VbxySmRTH1CopMX4dWVw-qZNcPWWm-P2FV6jb_RH9Cw9GLUpQsfIjjqIBnspcrFYsGAoUjQtGpfkWqoK-CVA2I_Obv9hL-3QvUD

Scan supersetup.exe - Powered by Reason Core Security