× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: d0488c699672e434aca1a271bb1b6e3fda38402b674b15ccda7c575a6542133c
File name: Dropbox 48.4.58 Offline Installer.exe
Detection ratio: 0 / 66
Analysis date: 2018-04-26 21:58:55 UTC ( 11 months, 3 weeks ago )
Antivirus Result Update
Ad-Aware 20180426
AegisLab 20180426
AhnLab-V3 20180426
Alibaba 20180426
ALYac 20180426
Antiy-AVL 20180426
Arcabit 20180426
Avast 20180426
Avast-Mobile 20180426
AVG 20180426
Avira (no cloud) 20180426
AVware 20180426
Babable 20180406
Baidu 20180426
BitDefender 20180426
Bkav 20180426
CAT-QuickHeal 20180426
ClamAV 20180426
CMC 20180426
Comodo 20180426
CrowdStrike Falcon (ML) 20180418
Cybereason 20180225
Cylance 20180426
Cyren 20180426
DrWeb 20180426
eGambit 20180426
Emsisoft 20180426
Endgame 20180403
ESET-NOD32 20180426
F-Prot 20180426
F-Secure 20180426
Fortinet 20180426
GData 20180426
Ikarus 20180426
Sophos ML 20180121
Jiangmin 20180426
K7AntiVirus 20180426
K7GW 20180426
Kaspersky 20180426
Kingsoft 20180426
Malwarebytes 20180426
MAX 20180426
McAfee 20180426
McAfee-GW-Edition 20180425
Microsoft 20180426
eScan 20180426
NANO-Antivirus 20180426
nProtect 20180426
Palo Alto Networks (Known Signatures) 20180426
Panda 20180426
Qihoo-360 20180426
Rising 20180426
SentinelOne (Static ML) 20180225
Sophos AV 20180426
SUPERAntiSpyware 20180426
Symantec 20180426
Symantec Mobile Insight 20180424
Tencent 20180426
TheHacker 20180426
TrendMicro 20180426
TrendMicro-HouseCall 20180426
Trustlook 20180426
VBA32 20180426
VIPRE 20180426
ViRobot 20180426
Webroot 20180426
Yandex 20180425
Zillya 20180426
ZoneAlarm by Check Point 20180426
Zoner 20180425
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
Copyright: Dropbox, Inc. 2015 (Omaha Copyright Google Inc.)

Product Dropbox Update
Original name DropboxUpdateSetup.exe
Internal name Dropbox Update Setup
File version 1.3.65.1
Description Dropbox Update Setup
Signature verification Signed file, verified signature
Signing date 11:19 AM 4/23/2018
Signers
[+] Dropbox, Inc
Status Valid
Issuer DigiCert Assured ID Code Signing CA-1
Valid from 1:00 AM 12/28/2016
Valid to 1:00 PM 1/2/2019
Valid usage Code Signing
Algorithm sha1RSA
Thumbprint DE7693BC9C65BEF26A717EEC8926A7806D94D25B
Serial number 08 C5 9B C2 3C 53 4B F2 B5 14 F7 E7 C2 86 03 A6
[+] DigiCert Assured ID Code Signing CA-1
Status Valid
Issuer DigiCert Assured ID Root CA
Valid from 1:00 PM 2/11/2011
Valid to 1:00 PM 2/10/2026
Valid usage Code Signing
Algorithm sha1RSA
Thumbprint 409AA4A74A0CDA7C0FEE6BD0BB8823D16B5F1875
Serial number 0F A8 49 06 15 D7 00 A0 BE 21 76 FD C5 EC 6D BD
[+] DigiCert
Status Valid
Issuer DigiCert Assured ID Root CA
Valid from 1:00 AM 11/10/2006
Valid to 1:00 AM 11/10/2031
Valid usage Server Auth, Client Auth, Email Protection, Code Signing, Timestamp Signing
Algorithm sha1RSA
Thumbprint 0563B8630D62D75ABBC8AB1E4BDFB5A899B24D43
Serial number 0C E7 E0 E5 17 D8 46 FE 8F E5 60 FC 1B F0 30 39
Counter signers
[+] Symantec Time Stamping Services Signer - G4
Status Valid
Issuer Symantec Time Stamping Services CA - G2
Valid from 1:00 AM 10/18/2012
Valid to 12:59 AM 12/30/2020
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 65439929B67973EB192D6FF243E6767ADF0834E4
Serial number 0E CF F4 38 C8 FE BF 35 6E 04 D8 6A 98 1B 1A 50
[+] Symantec Time Stamping Services CA - G2
Status Valid
Issuer Thawte Timestamping CA
Valid from 1:00 AM 12/21/2012
Valid to 12:59 AM 12/31/2020
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 6C07453FFDDA08B83707C09B82FB3D15F35336B1
Serial number 7E 93 EB FB 7C C6 4E 59 EA 4B 9A 77 D4 06 FC 3B
[+] Thawte Timestamping CA
Status Valid
Issuer Thawte Timestamping CA
Valid from 1:00 AM 1/1/1997
Valid to 12:59 AM 1/1/2021
Valid usage Timestamp Signing
Algorithm md5RSA
Thumbrint BE36A4562FB2EE05DBB3D32323ADF445084ED656
Serial number 00
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2017-01-13 19:55:44
Entry Point 0x00004AAC
Number of sections 5
PE sections
Overlays
MD5 a9c1a08d5177b3708f5fed1fa039a2de
File type data
Offset 86416384
Size 13744
Entropy 7.34
PE imports
OpenServiceW
CloseServiceHandle
OpenSCManagerW
QueryServiceStatusEx
GetStdHandle
WaitForSingleObject
HeapDestroy
VerifyVersionInfoW
FreeEnvironmentStringsA
DeleteCriticalSection
GetCurrentProcess
GetLocaleInfoA
FreeEnvironmentStringsW
GetCPInfo
GetStringTypeA
GetTempPathW
GetSystemTimeAsFileTime
HeapReAlloc
GetStringTypeW
GetExitCodeProcess
LocalFree
FormatMessageW
InitializeCriticalSection
LoadResource
TlsGetValue
SetLastError
RemoveDirectoryW
IsDebuggerPresent
ExitProcess
GetModuleFileNameA
VerSetConditionMask
UnhandledExceptionFilter
InterlockedDecrement
MultiByteToWideChar
SetFilePointerEx
SetUnhandledExceptionFilter
TerminateProcess
VirtualQuery
GetCurrentThreadId
InterlockedIncrement
CreateToolhelp32Snapshot
InitializeCriticalSectionAndSpinCount
HeapFree
EnterCriticalSection
SetHandleCount
GetVersionExW
GetOEMCP
QueryPerformanceCounter
GetTickCount
TlsAlloc
LoadLibraryA
RtlUnwind
GetStartupInfoA
GetStartupInfoW
CreateDirectoryW
DeleteFileW
GetProcAddress
GetProcessHeap
GetTempFileNameW
CreateFileMappingW
WriteFile
GetModuleFileNameW
CreateFileW
GetFileType
TlsSetValue
HeapAlloc
LeaveCriticalSection
GetLastError
LCMapStringW
UnmapViewOfFile
LCMapStringA
GetEnvironmentStringsW
lstrlenW
Process32NextW
VirtualFree
GetEnvironmentStrings
GetCurrentProcessId
LockResource
WideCharToMultiByte
HeapSize
GetCommandLineA
Process32FirstW
RaiseException
MapViewOfFile
TlsFree
SetFilePointer
ReadFile
CloseHandle
GetACP
GetModuleHandleW
FindResourceExW
SizeofResource
IsValidCodePage
HeapCreate
FindResourceW
CreateProcessW
Sleep
VirtualAlloc
PathQuoteSpacesW
wvsprintfW
CharLowerBuffW
MessageBoxW
CoInitializeEx
CoUninitialize
Number of PE resources by type
RT_STRING 21
RT_ICON 4
B 1
GOOGLEUPDATE 1
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 7
NEUTRAL 3
SWEDISH 1
FRENCH 1
CHINESE SIMPLIFIED 1
SPANISH MODERN 1
INDONESIAN DEFAULT 1
DUTCH 1
SPANISH MEXICAN 1
MALAY MALAYSIA 1
NORWEGIAN BOKMAL 1
PORTUGUESE BRAZILIAN 1
KOREAN 1
ITALIAN 1
GERMAN 1
POLISH DEFAULT 1
JAPANESE DEFAULT 1
DANISH DEFAULT 1
UKRAINIAN DEFAULT 1
CHINESE TRADITIONAL 1
THAI DEFAULT 1
RUSSIAN 1
PE resources
Debug information
ExifTool file metadata
UninitializedDataSize
0

InitializedDataSize
86367232

ImageVersion
0.0

ProductName
Dropbox Update

FileVersionNumber
1.3.65.1

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
Dropbox Update Setup

CharacterSet
Unicode

LinkerVersion
9.0

FileTypeExtension
exe

OriginalFileName
DropboxUpdateSetup.exe

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
1.3.65.1

LanguageId
en

TimeStamp
2017:01:13 20:55:44+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
Dropbox Update Setup

ProductVersion
1.3.65.1

SubsystemVersion
5.0

OSVersion
5.0

FileOS
Windows NT 32-bit

LegalCopyright
Copyright: Dropbox, Inc. 2015 (Omaha Copyright Google Inc.)

MachineType
Intel 386 or later, and compatibles

CompanyName
Dropbox, Inc.

CodeSize
48128

FileSubtype
0

ProductVersionNumber
1.3.65.1

EntryPoint
0x4aac

ObjectFileType
Executable application

File identification
MD5 4f5e0871dca3b4c8c90bb18e7b581dc2
SHA1 b452c435cf0b7de2d50734403a04f1088a01320c
SHA256 d0488c699672e434aca1a271bb1b6e3fda38402b674b15ccda7c575a6542133c
ssdeep
1572864:15HpJDP1LqyEc9g185Yn5ghnejhXuWkZ1xps2BVbB49Lhegb96Ybl:/HX1qyEsj5CeheuZ1xpsIV1k7fl

authentihash 7d89a8ccf1e6f1a38835dad4c31b9abd6e62cae4eb335a958e2fdb9d8e67e8e0
imphash 959c9df12e2ee961f3fcecfec5f9b8d1
File size 82.4 MB ( 86430128 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID DirectShow filter (61.3%)
Windows ActiveX control (35.4%)
Win32 Executable (generic) (1.3%)
OS/2 Executable (generic) (0.6%)
Generic Win/DOS Executable (0.6%)
Tags
peexe signed overlay

VirusTotal metadata
First submission 2018-04-24 18:10:45 UTC ( 12 months ago )
Last submission 2018-04-26 21:58:55 UTC ( 11 months, 3 weeks ago )
File names Dropbox 48.4.58 Offline Installer.exe
D0488C699672E434ACA1A271BB1B6E3FDA38402B674B15CCDA7C575A6542133C.exe
Dropbox 48.4.58 Offline Installer.exe
Dropbox Update Setup
target.exe
Dropbox 48.4.58 Offline Installer.exe
target.exe
target.exe
target.exe
Backup And Sync 3.41.9267.0638.exe
DropboxUpdateSetup.exe
Dropbox 48.4.58 Offline Installer.exe
target.exe
Backup And Sync 3.41.9267.0638.exe
Dropbox 48.4.58 Offline Installer.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!