wlsetup-web.exe

Windows Live

Microsoft Corporation

This is a self-extracting archive and installer. The file has been seen being downloaded from lb.cdn.m6web.fr and multiple other hosts.
Publisher:
Microsoft Corporation  (signed and verified)

Product:
Windows Live

Description:
Windows Live Installer

Version:
14.0.8089.0726

MD5:
1ed3217d714facbe53dac2bd62b34f85

SHA-1:
0b7fe43a62006d5f6366cc3393b9eae7bac03244

SHA-256:
71fd3a200f51949e7c4cc89380e988016976bcb5b1b231143b7a97233bfaa639

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
4/19/2024 11:59:47 PM UTC  (a few moments ago)

File size:
1.1 MB (1,164,616 bytes)

Product version:
14.0.8089.0726

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
wlsetup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\wlsetup-web.exe

Digital Signature
Authority:
Microsoft Corporation

Valid from:
10/22/2008 11:24:55 PM

Valid to:
1/22/2010 10:34:55 PM

Subject:
CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
61062781000000000008

File PE Metadata
Compilation timestamp:
7/26/2009 9:01:06 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:/slvRH5dfvFfdXqcOnrghk6RILJmZnsYwsEbT1dQ6y5:0D5dqcib6UJmCRbcn

Entry address:
0x2C29B

Entry point:
E8, 91, 3B, 00, 00, E9, 12, FE, FF, FF, CC, CC, CC, CC, CC, E9, 1C, 09, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 83, 3D, 60, D0, 4B, 00, 00, 0F, 84, CD, 3E, 00, 00, 83, EC, 08, 0F, AE, 5C, 24, 04, 8B, 44, 24, 04, 25, 80, 1F, 00, 00, 3D, 80, 1F, 00, 00, 75, 0F, D9, 3C, 24, 66, 8B, 04, 24, 66, 83, E0, 7F, 66, 83, F8, 7F, 8D, 64, 24, 08, 0F, 85, 9C, 3E, 00, 00, EB, 00, F3, 0F, 7E, 44, 24, 04, 66, 0F, 28, 15, F0, 45, 40, 00, 66, 0F, 28, C8, 66, 0F, 28, F8, 66, 0F, 73, D0, 34...
 
[+]

Code size:
721 KB (738,304 bytes)

The file wlsetup-web.exe has been seen being distributed by the following 11 URLs.

http://lb.cdn.m6web.fr/d/c/a/2b16ed946bb09147a7ffe57f3aad928a/57b32550/soft/.../windows-live-mail-2009_wl_mail_2009_14.0.8089.0726_francais_37760.exe

http://lb.cdn.m6web.fr/d/c/a/e9ad91c00db32b46ff4eb54fb6de0cc7/5892fbc0/soft/.../windows-live-mail-2009_wl_mail_2009_14.0.8089.0726_francais_37760.exe

https://download.microsoft.com/download/C/4/2/.../wlsetup-web.exe

http://soft.archive1.clubic.com/files/137e8dd372e2a523e899e84d4fc23777/51d92ec2/.../windows-live-photo-gallery-2009_wl_photo_gallery_2009_14.0.8081.709_francais_124558.exe

http://lb.cdn.m6web.fr/d/c/a/a610b050137467ffe2c61f15f722a32c/57e828c5/soft/.../windows-live-photo-gallery-2009_wl_photo_gallery_2009_14.0.8081.709_francais_124558.exe