xfire-2-44-0-761-multi-win.exe

Xfire, Inc.

Publisher:
Xfire, Inc.  (signed and verified)

MD5:
8fcb22c5b1505b17e47776deba948b9f

SHA-1:
b4498b53d28ad5f954614b18aaf078b28456c9f4

SHA-256:
207bb37c3b1ad0531d65657decf9315738f4dbd7ea8ff3d71f0e3b00bafb4d84

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 7:53:53 AM UTC  (today)

File size:
15.6 MB (16,336,696 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\xfire-2-44-0-761-multi-win.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
9/4/2013 7:00:00 PM

Valid to:
11/11/2015 6:00:00 AM

Subject:
CN="Xfire, Inc.", O="Xfire, Inc.", L=Santa Monica, S=California, C=US

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0336F716FD5E19A2A13EE12A00887476

File PE Metadata
Compilation timestamp:
1/30/2013 8:21:56 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:eXAvmnot4xjkTgRSNY0rNtbGglb5V6o8KDx97XFEsmqXS1fnZiuuyVOz+9fbAG:e0Y8gRcYQTpSUNrEsmyShZiQOzyfx

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 2C, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 16, D8, FF, FF, E8, 65, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 2B, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 50, 86...
 
[+]

Entropy:
6.7206

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file xfire-2-44-0-761-multi-win.exe has been seen being distributed by the following 5 URLs.

https://dw.uptodown.com/dwn/fJxCc6-NRJg9F3Xwy5QZUYSywslY32hdL_jPp6Yyi73MdK-TsyocxTE3gOPOWwl3vw49BuIlbOVS-IWZKElYp6lGxeJGkDy6W5RRkLpPC98NT--XG1jfnvLn4f2tWxuJ/9GUgLWmlQuhNnArpZpdIHa8c6QbFpqXrICZdlORKrY29oB_Rs-sqr1S1fv9_IxO_PAjnuw7-Rl9-oyy-PccVUjXFAsochrA2XQS3wOjJYY6Z0_TzmsNKcmOHdcx2gwcs/EwjD11A_2TS-xWEgXIVfaqDGjilYD4GLQn00JPhmFelLlGXuDgwLnN1YRQ1TwUJjWtCM3b_f4KEfTQB_Mq0FdAwvx_2aitKt452wNgRw_7aCLag1CorodiGWZ9Xdj0UX/.../

https://dw.uptodown.com/dwn/t5caURAuTqXyDrNsU7Sw4SMJRjvDSOhq2vBYD5Qj4yAIhFSVT3uuP56-O33ds8PSUrcq2Jg9FL37AKj0p7N7zYihfr0yPAQCKH6JSh4slq8MOSeYVrvDFeBFW48q2PWf/kvaR8d1SGqOO_AFTspbkLaF80glP0YXrPAnKlsGQ2JaKCM1YRH0e7Y5RBBvCRKnYFmaAqCXOkVqNkPj3DEC_dD_zKcFaHCI74CAcZBTlVj1wJzRU3fsJj7DZRqgBbYtZ/HQqhcOqPtCAlCmUkUHS2iLDN61tmfC7zES-ZKb-eO0guThYUErXvfybuE7J7gj99xTqey9J2gfU9qBq9gZYv_cYMM6oocBBpDE5HpcnUb4Wz7YQsaw28RrFHGNWfVesG/.../

https://dw.uptodown.com/dwn/jfNZNOWXlV7-8lNgRVEhEAWGQDPqRGQdLjQKhc8Kus4IRivFZ_DpbVsSh3gK7JsKZM7SPS2t34q4C8gZHZLTk-0zTmHdmEqQGkYn6ZQIb7a_nYJOmSHHpUiC4u5cnvqx/gxUSPq8VjELXbBChZKizZ07Lzc4RLg2rAAfP4jOndK0RhLLtL2o7VNznOHSjqFP-4O0lz7GQ0RBxqFBwQnROJi5ian435_IHKIWFzC0a5_dh4FmlWLklfWBTjXBCoKT3/MeL8qaubwn7oWGN2-2YmGVM_RAYfZwpGGM8ccw3thH0AtGHAczP9XkQXG_2i13RV9cAftDkAsklPr5ip0uB0Gk5OEzfdUMfAQlRgeOqT51Mp2OUO5ZxEUeJQiEOyxST7/.../

https://dw.uptodown.com/dwn/t597k-ctIsLFY482PJSWOD_-8ZweNz7tiQXM-jDHAQon3ru6cVNMFhj1nxz3ujyEj5wgt6HiSLme-dfpI0FMSkrMKvjrjqBsfuCdaJKi5mbA9dCnpmE1FHPBzon6uggo/WPaRbR_LfYutw9KPfOHPcID-ZTkNPUSCAMHSKIsPnxLVBO1VZ6JSXkWLBRp-wfxKcScwZNTRb8Fgl0OKw4-N_-XUFwpaXpxFxp07AdkDZL1TUcv9i84O94TapHLBm-iy/azIx0b7CRslF63dDWnnz9wQWC4m_a4PTkn7vYO3CAE2M1gBeP9rsClYtEduACJyt4FbEgWybZCRVfM_Bz9L6VKddZbgFBdvP-dotPwv1l5TQh6OFQ7LtZUxc8A74AG8N/.../

https://dw.uptodown.com/dwn/hghTbNAjuqaw_twm2NbbUv2vCK-E47gda1qIwIhD-lTql0nMvac2Acp2gyldYZSwx2reT9gvgYbBqazEkv2qvrfSBwqq_V4-BlX1MBlwPNisRgjHTbUVqidT_aVBIIW8/GpfeoN-9m3VJ_61nIwjq39lHkQFNgkW1bnkD9-8cNWAQN0fQjx5N3LjoIRZsYH1iUWqdzJ5piGaMIEjEq-kqjbS2WuO08-f6Hb7sonNfk3h3KLlmuApKkrGGvCrUe5vg/vfiaQe1TcGdAHFDdv6p89ffnDz-fxM7pwSa1-3JSdF1CXGMxiOSYSgOoWsFiDlp7tQq6bgefichxvJ2eX41-d-RAA2yfku4UEzul5rzUKNMOp8_pvkbxAgL8tq95D9N_/.../

Scan xfire-2-44-0-761-multi-win.exe - Powered by Reason Core Security