teamviewer_setup.exe

TeamViewer

This is a setup and installation application. This is installed with multiple programs including TeamViewer 7 and TeamViewer Corporate. The file has been seen being downloaded from docs.google.com and multiple other hosts.
Publisher:
TeamViewer GmbH  (signed by TeamViewer)

Version:
7.0.12541.0

MD5:
5900ff760937ca5be362acb6b08a0a43

SHA-1:
fb5b986cfb2175146f8b0d073b2ce05e4477703d

SHA-256:
7a239b5c4cad7bcc465ee3aef77a295738a81cf210b91c96d66be265d7fd3987

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 9:59:15 AM UTC  (today)

File size:
4.9 MB (5,093,448 bytes)

Copyright:
TeamViewer GmbH

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\teamviewer_setup.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/8/2011 8:00:00 AM

Valid to:
8/8/2014 7:59:59 AM

Subject:
CN=TeamViewer, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=TeamViewer, L=Goeppingen, S=Baden Wuerttemberg, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3D27AFBEA5996F13E5B5624421F16295

File PE Metadata
Compilation timestamp:
6/7/2009 5:41:48 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:9wWrOLst2lETPYQ1jQJlGWRr7niNsSrtbQfIoJDjSO5NKR:9dCETT2JlGCfGrtbVoSO5c

Entry address:
0x36250

Entry point:
60, BE, 00, 20, 43, 00, 8D, BE, 00, F0, FC, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75...
 
[+]

Entropy:
7.9969

Packer / compiler:
UPX 2.90LZMA]

Code size:
20 KB (20,480 bytes)

The file teamviewer_setup.exe has been discovered within the following programs.

TeamViewer 7  by TeamViewer GmbH
Publisher's description - “TeamViewer is a simple and fast solution for remote control, desktop sharing and file transfer that works behind any firewall and NAT proxy. To connect to another computer just run TeamViewer on both machines without the need of an installation procedure.”
www.teamviewer.com/en/download/windows.aspx
7% remove it
TeamViewer Corporate  by TeamViewer GmbH
4% remove it
 
Powered by Should I Remove It?

The file teamviewer_setup.exe has been seen being distributed by the following 21 URLs.

https://docs.google.com/uc?authuser=0&id=0B7Qe5tqSKOERTTZnY2N6WHVZWlE&export=download

http://download1493.mediafire.com/nxk9uu54oueg/.../TeamViewer 7.0.exe

http://www.chebib.com.br/.../TeamViewer.exe

http://www.silbeck.com.br/.../TeamViewer_Setup.exe

https://dl.dropboxusercontent.com/u/.../Support/demo/TeamViewer_Setup.exe

ftp://data.priserve.com/TeamViewer_Setup.exe

ftp://115.119.141.114/Other SW's/.../TeamViewer_setup_7.exe

http://downloadus1.teamviewer.com/download/.../TeamViewer_Setup.exe

http://200.67.79.167/tv7.exe

http://download832.mediafire.com/zdl3k2dfwuxg/.../TeamViewer 7.0.exe

https://doc-08-3g-docs.googleusercontent.com/docs/securesc/eckferqn9nbehtqmqmfb45umei0do8t7/1knc0v7g0j3f8is2ls7jh2ndsv62isvg/1456581600000/.../11601782877315350720/0B3CIG9a7cKPHWHVvVlZFY3RHZTg?e=download

ftp://177.206.6.170/Brenda/TeamViewer-7/.../TeamViewer_Setup.exe