Enter the MD5, SHA1 or SHA256 hash to search for:
Summary
Sections
|
| MD5: | 192d10f7e324719253b210bd790e3df2 | | SHA1: | 7cb6881823137fec72aab1558c91254f29df0cd1 | | SHA256: | 5ca08316aaa30a147999251a14af68ef6564cd4de3a83d6872a32628aadfce2c | | Date Submitted: | 6/25/2012 3:17:52 AM | | Malicious: | True | | Executable: | True |
| | | |
|
FileType Statistics
| FileType: | 39.5% (.EXE) UPX compressed Win32 Executable (30569/9/7)
34.3% (.EXE) Win32 EXE Yodas Crypter (26569/9/4)
11.0% (.EXE) Win32 Executable Generic (8527/13/3)
9.8% (.DLL) Win32 Dynamic Link Library (generic) (7583/30/2)
2.5% (.EXE) Generic Win/DOS Executable (2002/3) |
Identity Statistics
| Vendors Declaring Malicious: | |
| TotalVendors: | |
VirusTotal Report:
http://www.virustotal.com/file/5ca08316aaa30a147999251a14af68ef6564cd4de3a83d6872a32628aadfce2c/analysis/| Malware Family Detections: | | Adware.Downware.325 a variant of Win32/SoftonicDownloader.D
|
Static Analysis Data
CRC Data
Claimed Compile Date: Wed Jun 13 10:40:32 2012 UTC
| | Count | Language Reference Counts | | 9 | LANG_SPANISH SUBLANG_SPANISH_MODERN | | 1 | LANG_ENGLISH SUBLANG_ENGLISH_US |
| Static Analysis Alerts:
- Packer Detected: UPX
- URL Detected: http://winrar.sd.softonic.it/universaldownloader-prefetch[ENDVALUE][KEY]NOINT_TITLE[VALUE]Nessuna connessione Internet rilevata[ENDVALUE][KEY]NOINT_MSG[VALUE]
|
Screenshots

Origin Statistics
| URL ID | Date Added | URL | IP | Source |
| 166597 | 6/25/2012 3:17:52 AM | http://universal-downloader.softonic.it/12000/12536/ud_400/SoftonicDownloader_per_winrar.exe | universal-downloader.softonic.it.s3.amazonaws.com. | Clean-MX |
Primary Domain Information
| Level 3 (control) | 205.251.242.149 | Control | | Google | 207.171.185.201 | ALLOWED | | OpenDNS | 72.21.203.149 | ALLOWED | | Norton | 72.21.194.16 | ALLOWED | | Comodo | 207.171.163.206 | ALLOWED |
| |
Network Traffic Analysis

HTTP Request Data
| Host | Port | HTTP URI | Method |
| en.softonic.com | 80 | /error404?event_short_name=post-download-page&event_type=page_view¤cy=USD | GET |
| screenshot.it.sftcdn.net | 80 | /it/scrn/12000/12536/winrar-09-100x100.png | GET |
| static.sd.softonic.it | 80 | /it/css/generated/7143-18234.css | GET |
| static.sd.softonic.it | 80 | /it/js/generated/28068-56497.js | GET |
| static.sd.softonic.it | 80 | /shared/img/universaldownloader/truste_seal.png | GET |
| v3it.sftcdn.net | 80 | /shared/img/icons/icons_sprite.png | GET |
| v3it.sftcdn.net | 80 | /shared/img/universaldownloader/v1_images.png | GET |
| v4it.sftcdn.net | 80 | /shared/img/universaldownloader/loading.gif | GET |
| winrar.sd.softonic.it | 80 | /partners-event?event_short_name=post-download-page&event_type=page_view¤cy=USD | GET |
| winrar.sd.softonic.it | 80 | /universaldownloader/no-campaign | GET |
| winrar.sd.softonic.it | 80 | /universaldownloader-prefetch | GET |
| winrar.sd.softonic.it | 80 | /universaldownloader-track | POST |
| www.google-analytics.com | 80 | /__utm.gif?utmwv=5.2.8&utms=1&utmn=445502843&utmhn=winrar.sd.softonic.it&utmcs=utf-8&utmsr=800x600&utmvp=650x450&utmsc=32-bit&utmul=en-us&utmje=1&utmfl=10.3%20r181&utmdt=installation%20assistant&utmhid=330080728&utmr=http%3A%2F%2Fflashcookie_error_flashcookie_error&utmp=%2Finit_startup&utmac=UA-20034682-2&utmcc=__utma%3D61559850.506382472.1340611253.1340611253.1340611253.1%3B%2B__utmz%3D61559850.1340611253.1.1.utmcsr%3Dflashcookie_error_flashcookie_error%7Cutmccn%3D(referral)%7Cutmcmd%3Dreferral%7Cutmcct%3D%2F%3B&utmu=qACAAAAAC~ | GET |
| www.google-analytics.com | 80 | /__utm.gif?utmwv=5.2.8&utms=2&utmn=25354390&utmhn=winrar.sd.softonic.it&utmcs=utf-8&utmsr=800x600&utmvp=650x450&utmsc=32-bit&utmul=en-us&utmje=1&utmfl=10.3%20r181&utmdt=installation%20assistant&utmhid=330080728&utmr=http%3A%2F%2Fflashcookie_error_flashcookie_error&utmp=%2Fstart_api&utmac=UA-20034682-2&utmcc=__utma%3D61559850.506382472.1340611253.1340611253.1340611253.1%3B%2B__utmz%3D61559850.1340611253.1.1.utmcsr%3Dflashcookie_error_flashcookie_error%7Cutmccn%3D(referral)%7Cutmcmd%3Dreferral%7Cutmcct%3D%2F%3B&utmu=qACAAAAAC~ | GET |
DNS Request Data
DNS Requests
| Query |
| en.softonic.com |
| screenshot.it.sftcdn.net |
| static.sd.softonic.it |
| static.www.softonic.it |
| v3it.sftcdn.net |
| v4it.sftcdn.net |
| winrar.sd.softonic.it |
| www.google-analytics.com |
DNS Responses
| Query | Response |
| en.softonic.com | 46.28.209.13 |
| screenshot.it.sftcdn.net | 46.28.209.54 |
| static.sd.softonic.it | 46.28.209.70 |
| static.www.softonic.it | |
| v3it.sftcdn.net | 46.28.209.43 |
| v4it.sftcdn.net | 46.28.209.43 |
| winrar.sd.softonic.it | 46.28.209.70 |
| www.google-analytics.com | 74.125.228.14,74.125.228.0,74.125.228.1,74.125.228.2,74.125.228.3,74.125.228.4,74.125.228.5,74.125.228.6,74.125.228.7,74.125.228.8,74.125.228.9 |
Discussion
blog comments powered by