telexfree-x64.exe

Jitsi

BlueJimp

This is a setup and installation application. The file has been seen being downloaded from telexfree.com and multiple other hosts.
Publisher:
jitsi.org  (signed by BlueJimp)

Product:
Jitsi

Description:
Jitsi Setup

Version:
1.0.0.0

MD5:
a5c4adc1a3bd21fbabf0852066b3708b

SHA-1:
52b3495b54bbe9d693a59b88f769d6e0add49581

SHA-256:
f99b8a4ac81e2ff0fd0d70ca9c3889043dfed2b11cd410a7f4e33dd2b2311d55

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 4:55:44 PM UTC  (today)

File size:
28.7 MB (30,092,560 bytes)

Product version:
1.0.0.0

Original file name:
setup.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\telexfree-x64.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
11/14/2011 5:56:31 AM

Valid to:
11/11/2013 9:19:44 PM

Subject:
CN=BlueJimp, O=BlueJimp, L=Strasbourg, S=Bas Rhin, C=FR

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2B1057E15CFFD1

File PE Metadata
Compilation timestamp:
10/1/2012 7:42:44 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
2.21

CTPH (ssdeep):
786432:yRcaC6C3a1V+9e5x0JNNnJbfD4m757qtgx:yRcZoV+45x0JNNndD4m7574g

Entry address:
0x1510

Entry point:
48, 83, EC, 28, C7, 05, A2, 1B, 02, 00, 01, 00, 00, 00, E8, 2D, 94, 01, 00, 48, 83, C4, 28, E9, 64, FC, FF, FF, 0F, 1F, 40, 00, 48, 83, EC, 28, C7, 05, 82, 1B, 02, 00, 00, 00, 00, 00, E8, 0D, 94, 01, 00, 48, 83, C4, 28, E9, 44, FC, FF, FF, 90, 90, 90, 90, 48, 83, EC, 08, 0F, B6, 51, 07, 44, 0F, B6, 41, 06, 89, D0, 83, E0, 7F, C1, E0, 08, 44, 01, C0, 44, 0F, B6, 41, 05, C1, E0, 08, 44, 01, C0, 44, 0F, B6, 41, 04, C1, E0, 08, 44, 01, C0, 44, 0F, B6, 41, 03, C1, E0, 08, 44, 01, C0, 44, 0F, B6, 41, 02, C1, E0...
 
[+]

Code size:
105.5 KB (108,032 bytes)

The file telexfree-x64.exe has been seen being distributed by the following 2 URLs.

http://telexfree.com/public/file/.../telexfree-x64.exe

Scan telexfree-x64.exe - Powered by Reason Core Security