× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: d9741faefc574a5c3c99d9a1e788de9a26ddda06a8f469764d6bead09ab69e97
File name: OperaOfflineInstaller.exe
Detection ratio: 0 / 67
Analysis date: 2019-02-19 06:25:54 UTC ( 1 month ago ) View latest
Antivirus Result Update
Acronis 20190213
Ad-Aware 20190219
AegisLab 20190219
AhnLab-V3 20190219
Alibaba 20180921
ALYac 20190219
Antiy-AVL 20190219
Arcabit 20190219
Avast 20190219
Avast-Mobile 20190218
AVG 20190219
Avira (no cloud) 20190218
Babable 20180918
Baidu 20190215
BitDefender 20190219
Bkav 20190218
CAT-QuickHeal 20190218
ClamAV 20190218
CMC 20190218
Comodo 20190219
CrowdStrike Falcon (ML) 20181023
Cybereason 20190109
Cylance 20190219
Cyren 20190219
DrWeb 20190219
eGambit 20190219
Emsisoft 20190219
Endgame 20190215
ESET-NOD32 20190219
F-Prot 20190219
F-Secure 20190219
Fortinet 20190219
GData 20190219
Ikarus 20190218
Sophos ML 20181128
Jiangmin 20190219
K7AntiVirus 20190219
K7GW 20190219
Kaspersky 20190219
Kingsoft 20190219
Malwarebytes 20190219
MAX 20190219
McAfee 20190219
McAfee-GW-Edition 20190219
Microsoft 20190219
eScan 20190219
NANO-Antivirus 20190219
Palo Alto Networks (Known Signatures) 20190219
Panda 20190218
Qihoo-360 20190219
Rising 20190219
SentinelOne (Static ML) 20190203
Sophos AV 20190219
SUPERAntiSpyware 20190213
Symantec 20190219
Symantec Mobile Insight 20190207
TACHYON 20190219
Tencent 20190219
TheHacker 20190217
Trapmine 20190123
TrendMicro 20190219
TrendMicro-HouseCall 20190219
Trustlook 20190219
VBA32 20190218
ViRobot 20190219
Webroot 20190219
Yandex 20190215
Zillya 20190218
ZoneAlarm by Check Point 20190219
Zoner 20190219
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
Copyright Opera Software 2018

Product Opera Installer
Internal name Opera
File version 50.0.2762.67
Description Opera Installer
Signature verification Signed file, verified signature
Signing date 7:01 AM 1/22/2018
Signers
[+] Opera Software AS
Status Valid
Issuer DigiCert EV Code Signing CA (SHA2)
Valid from 12:00 AM 06/23/2016
Valid to 12:00 PM 06/27/2019
Valid usage Code Signing
Algorithm sha256RSA
Thumbprint 49B00D844B474FC69BC372951A681C9FC2BBBC66
Serial number 0F DE 84 F0 D5 5D 8D 33 68 32 5D C0 CD C4 A9 79
[+] DigiCert EV Code Signing CA (SHA2)
Status Valid
Issuer DigiCert High Assurance EV Root CA
Valid from 12:00 PM 04/18/2012
Valid to 12:00 PM 04/18/2027
Valid usage Code Signing
Algorithm sha256RSA
Thumbprint 60EE3FC53D4BDFD1697AE5BEAE1CAB1C0F3AD4E3
Serial number 03 F1 B4 E1 5F 3A 82 F1 14 96 78 B3 D7 D8 47 5C
[+] DigiCert
Status Valid
Issuer DigiCert High Assurance EV Root CA
Valid from 12:00 AM 11/10/2006
Valid to 12:00 AM 11/10/2031
Valid usage Server Auth, Client Auth, Email Protection, Code Signing, Timestamp Signing
Algorithm sha1RSA
Thumbprint 5FB7EE0633E259DBAD0C4C9AE6D38F1A61C7DC25
Serial number 02 AC 5C 26 6A 0B 40 9B 8F 0B 79 F2 AE 46 25 77
Counter signers
[+] DigiCert SHA2 Timestamp Responder
Status Valid
Issuer DigiCert SHA2 Assured ID Timestamping CA
Valid from 12:00 AM 01/04/2017
Valid to 12:00 AM 01/18/2028
Valid usage Timestamp Signing
Algorithm sha256RSA
Thumbrint 400191475C98891DEBA104AF47091B5EB6D4CBCB
Serial number 09 C0 FC 46 C8 04 42 13 B5 59 8B AF 28 4F 4E 41
[+] DigiCert SHA2 Assured ID Timestamping CA
Status Valid
Issuer DigiCert Assured ID Root CA
Valid from 12:00 PM 01/07/2016
Valid to 12:00 PM 01/07/2031
Valid usage Timestamp Signing
Algorithm sha256RSA
Thumbrint 3BA63A6E4841355772DEBEF9CDCF4D5AF353A297
Serial number 0A A1 25 D6 D6 32 1B 7E 41 E4 05 DA 36 97 C2 15
[+] DigiCert
Status Valid
Issuer DigiCert Assured ID Root CA
Valid from 12:00 AM 11/10/2006
Valid to 12:00 AM 11/10/2031
Valid usage Server Auth, Client Auth, Email Protection, Code Signing, Timestamp Signing
Algorithm sha1RSA
Thumbrint 0563B8630D62D75ABBC8AB1E4BDFB5A899B24D43
Serial number 0C E7 E0 E5 17 D8 46 FE 8F E5 60 FC 1B F0 30 39
Packers identified
F-PROT appended, 7Z
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2018-01-19 21:10:20
Entry Point 0x0000278E
Number of sections 5
PE sections
Overlays
MD5 e19239e282eee57dc30db465d26410f1
File type data
Offset 2256384
Size 37510152
Entropy 8.00
PE imports
GetSystemTime
GetLastError
InitializeCriticalSectionAndSpinCount
HeapFree
GetSystemTimeAsFileTime
EnterCriticalSection
LCMapStringW
GetModuleFileNameW
GetConsoleCP
GetVersionExW
FreeLibrary
QueryPerformanceCounter
HeapReAlloc
IsDebuggerPresent
ExitProcess
TlsAlloc
GetEnvironmentStringsW
FlushFileBuffers
HeapSize
RtlUnwind
GetStdHandle
DeleteCriticalSection
GetCurrentProcess
SizeofResource
GetConsoleMode
GetStringTypeW
GetCurrentProcessId
LockResource
GetCommandLineW
GetCPInfo
UnhandledExceptionFilter
LoadLibraryExW
MultiByteToWideChar
GetStartupInfoW
SetFilePointerEx
FreeEnvironmentStringsW
DeleteFileW
GetProcAddress
InitializeSListHead
GetFileType
SetStdHandle
RaiseException
WideCharToMultiByte
LoadLibraryW
TlsFree
FindResourceW
FindNextFileW
SetUnhandledExceptionFilter
GetTempPathW
CloseHandle
IsProcessorFeaturePresent
GetCommandLineA
GetACP
FindFirstFileExW
DecodePointer
GetModuleHandleW
GetOEMCP
TerminateProcess
GetModuleHandleExW
IsValidCodePage
LoadResource
WriteFile
CreateFileW
FindClose
TlsGetValue
WriteConsoleW
TlsSetValue
HeapAlloc
GetCurrentThreadId
GetProcessHeap
SetLastError
LeaveCriticalSection
MessageBoxW
Number of PE resources by type
RT_STRING 37
RT_ICON 12
RT_DIALOG 5
TXT 4
RT_RCDATA 2
PNG 2
JPG 1
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 30
SWEDISH 1
TELUGU DEFAULT 1
VIETNAMESE DEFAULT 1
TAMIL DEFAULT 1
FRENCH 1
BELARUSIAN DEFAULT 1
INDONESIAN DEFAULT 1
DUTCH 1
MALAY MALAYSIA 1
CATALAN DEFAULT 1
PORTUGUESE BRAZILIAN 1
HUNGARIAN DEFAULT 1
FINNISH DEFAULT 1
HINDI DEFAULT 1
TURKISH DEFAULT 1
KOREAN 1
ITALIAN 1
CZECH DEFAULT 1
LATVIAN DEFAULT 1
LITHUANIAN 1
GERMAN 1
BULGARIAN DEFAULT 1
POLISH DEFAULT 1
JAPANESE DEFAULT 1
DANISH DEFAULT 1
SWAHILI DEFAULT 1
SLOVAK DEFAULT 1
BENGALI DEFAULT 1
GREEK DEFAULT 1
UKRAINIAN DEFAULT 1
NORWEGIAN BOKMAL 1
CHINESE TRADITIONAL 1
THAI DEFAULT 1
SERBIAN DEFAULT 1
ROMANIAN 1
RUSSIAN 1
PE resources
Debug information
ExifTool file metadata
UninitializedDataSize
0

LinkerVersion
14.11

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
50.0.2762.67

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
Opera Installer

ImageFileCharacteristics
Executable, Large address aware, 32-bit

CharacterSet
Unicode

InitializedDataSize
2208256

EntryPoint
0x278e

MIMEType
application/octet-stream

LegalCopyright
Copyright Opera Software 2018

FileVersion
50.0.2762.67

TimeStamp
2018:01:19 22:10:20+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
Opera

ProductVersion
50.0.2762.67

SubsystemVersion
5.1

OSVersion
5.1

FileOS
Windows NT 32-bit

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Opera Software

CodeSize
49664

ProductName
Opera Installer

ProductVersionNumber
50.0.2762.67

FileTypeExtension
exe

ObjectFileType
Executable application

File identification
MD5 d8311f370d958570bac0b3e3809b42cf
SHA1 8517e180b9ae8e256e56eccba46fd57c99de2b07
SHA256 d9741faefc574a5c3c99d9a1e788de9a26ddda06a8f469764d6bead09ab69e97
ssdeep
393216:0GhDXZiaE+x9DFtev18gkdr8TIhq7kjF7efEalW+zmkjDTKBV0jvQfjbdrgFMJ3l:0GhLHhYSa97+hFkf+JAYbb0fFcsBpH

authentihash 3792e49bab84908638347049ba985d0a62848f37630308e7e5f9d8bfd51c0ea1
imphash 1ac915d977b6203d03e91bce554a2476
File size 37.9 MB ( 39766536 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win64 Executable (generic) (72.3%)
Win32 Executable (generic) (11.8%)
OS/2 Executable (generic) (5.3%)
Generic Win/DOS Executable (5.2%)
DOS Executable Generic (5.2%)
Tags
peexe signed overlay

VirusTotal metadata
First submission 2018-01-22 10:20:14 UTC ( 1 year, 1 month ago )
Last submission 2019-03-14 11:35:37 UTC ( 1 week ago )
File names target.exe
Opera_50.0.2762.67.exe
Opera_50.0.2762.67_Setup.exe
D9741FAEFC574A5C3C99D9A1E788DE9A26DDDA06A8F469764D6BEAD09AB69E97.exe
Opera
OperaOfflineInstaller.exe
opera.exe
opera_50-0-2762-67_fr_18773.exe
Opera_50.0.2762.67_Setup.exe
Opera_50.0.2762.67_Setup.exe
target.exe
Opera_50.0.2762.67_Setup_x86.exe
target.exe
target.exe
opera_stable-50.0.2762.67-windows-release-i386-signed.exe
Opera_50.0.2762.67_Setup.exe
OperaSetupX86_50.0.2762.67.exe
opera-20.exe
Opera_50.0.2762.67.x32.exe
opera-10.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!