videoconverter_setup.exe

ZXT2007 Video Converter

Ye Yizhou

The application videoconverter_setup.exe, “ZXT2007 Video Converter Setup ” by Ye Yizhou has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. The file has been seen being downloaded from it.softonic.com and multiple other hosts.
Publisher:
zxt2007.com   (signed by Ye Yizhou)

Product:
ZXT2007 Video Converter

Description:
ZXT2007 Video Converter Setup

Version:
2.1.2.0

MD5:
c596a6e723fbfe3f82f3db439b5c5084

SHA-1:
9e2b1bfcd99db652182d96e542f3c493eb55b115

SHA-256:
db450717e23be0b0affdc357809a139418f0869e53b0649cb1d40a52fc9b2b48

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 1:13:53 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Bundler.YeYizhou.Installer.Meta (M)
16.7.8.10

File size:
6.8 MB (7,080,376 bytes)

Product version:
2.1.2.0

Copyright:
Copyright 2013-2015 ZXT2007.com.

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\videoconverter_setup.exe

Digital Signature
Signed by:

Authority:
WoSign CA Limited

Valid from:
9/7/2015 12:00:33 AM

Valid to:
9/7/2016 12:00:33 AM

Subject:
CN=Ye Yizhou, L=Longyou, S=Zhejiang, C=CN

Issuer:
CN=WoSign Class 2 Code Signing CA G2, O=WoSign CA Limited, C=CN

Serial number:
304E7576E2082A9B6E87C0FFCC4B397C

File PE Metadata
Compilation timestamp:
7/16/2015 10:24:20 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:MPqhL8WM6ne2vi6GKBVgLUZ+cdmSkW/lJFEc2w3Ga4uFk/rEWVOMDP3AMJ7ff4Ac:Mih06cKwowcwSkWrv6Ms3p7ff/c

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 34, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 1E, D8, FF, FF, E8, 6D, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 33, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 54, 86...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file videoconverter_setup.exe has been seen being distributed by the following 13 URLs.

http://it.softonic.com/sads/tracker.php?ev=c&co=ES&sid=c5ac3b98c7422ca72b26bed1ecd7a0a0&upv=95b1501f1eb67e9d9eb999b4c6550c79&z=results&sk=0&abp=0&params=0AD273D27321422AABDECB0441027EAE2E29CE113EA5CCB54B8134038DAEE97A8DC00A9077636F1C125E913744D16ABC004E5D10B91F8756C892C2159448DDCF2FF11575C66B6543F94CEDAE92037966EAD58A526EAD9E64354940DE6E6AC55F22ECAFAC064C2D13345AAC798E85B489E6A98CAE89A4548867DB797D528A1B0418F7CE0AD0AF7CFF140342864B69AE4477A8188F419D3E3B2683C7EAA71393D6&h=353B418A8EDBD67BD463E79972184D8CC226F890921BC092C5F47A675E2FCBE3&directdownload=1&f=69671820&d=http://en.zxt2007.com/.../videoconverter_setup.exe

http://it.softonic.com/sads/tracker.php?ev=c&co=IT&sid=51c4a92b45abd46ad23412c94af659a0&upv=281029bc57563cab482e42093597a5ba&z=results&sk=0&abp=1&params=0AD273D27321422AABDECB0441027EAE2E29CE113EA5CCB54B8134038DAEE97A8DC00A9077636F1C125E913744D16ABC2A267112F5ADAB590F7D8AE885581A7BBBE9B1D53430694D4CDCB0847B6A5CE5779EE1110BAD0E96093A2A50E8B1CB345212FE07F13DA22AEB7BA2A820AD4B96BA1E095BFF0935D774F2CAE41F4121AB36EFF646946FC6DB85FDA03352C3F3DD2B0D09E098EAF656BFE4C63287FF809D&h=F75A2C2D27451002FBF27C2DD2AECC4046A62187D4E57671B22EB4D0BFE2FC2A&directdownload=1&f=69671820&d=http://en.zxt2007.com/.../videoconverter_setup.exe

http://de.softonic.com/sads/tracker.php?ev=c&co=DE&sid=b83bfdc3ef97e3ff68bc8e61283c44a6&upv=2c786841910201ff8fcb2fe55ba593f9&z=results&sk=0&abp=0&params=E58A21D548552342230FD9D405D3DC9D5050C7D9DC3346ED75F51AC831861ED5D10C23DFE103DFEE0EA4687E4B081C9DEDD452CBC611C35519608CE05B6440D84500E35BC582CFCBFC266364B38D389657A460A2685EE46D646CD4F186C8F84C894E8FF060EA7B02E4EBDC8EF33F5DFFC9119C4481B2AC2D7599BC8ED4CBF21DAF2958D3B24221A0C577BD199A7F71B9F170CC7B9B5FD2E00147A168E3294E7C&h=C40BA761167F33CFA729D8D8AF9E8B79503ACC40372140C00432591237B327E7&directdownload=1&f=69671820&d=http://en.zxt2007.com/.../videoconverter_setup.exe

http://zxt2007-video-converter.it.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAPNbFIbvPqwG59DNzhKGKPopOS/.../m95eDklI4USs=

http://en.softonic.com/sads/tracker.php?ev=c&co=FI&sid=9f9875e6391f317df54f4cadfeb9680d&upv=ecf2ea27c62d4f68e20799420846601b&z=results&sk=0&abp=0&params=F39B2A32BFC101987B1458170C278E031A872F37FCA34CAE6F173519F808D83A8908CDFCFFABDA4F5B4D8A15B482192D493450BA542BF7FD632FDA1BBA5EFD7977B9FE1B6B4424EE1462AB7D2AA027697B99D3E531C8DBA99FFAEC6812A4CD84A8F0144EA69C5B09E5561711E10003DCBF0CCE8385C19A9E76682F7C7746B558D42C93EB3BC27E7C2ED56EAF8D7F18974A627A5ACCF341710285DD90317E3F5D&h=29622577C1BDA0F17D4CAE969D8763961FFB3A46207998D1A4E98660924207AB&directdownload=1&f=69671820&d=http://en.zxt2007.com/.../videoconverter_setup.exe

http://www.softonic.com/sads/tracker.php?ev=c&co=AR&sid=82a9c3fc12b1efcb2a96f8e3b3ac2f94&upv=a078df2267f46c0593d264edec6e0f64&z=download-cpd&sk=719&abp=0&params=F24F8F4D368AFA5D32C8A90D9EFD1CBAC9B15663BFCC32A4B420C96190DC24F2803E2223C8F0B0BB1BAE8C036B382A3DC4E762374CF05A895700A040DA3F8047ACE0E19A278A659347A50BA4302F0993341B55F8C4865389B7B2AFD96034D7C38F9F8A96AD6785B6AF6335BEA2936A997DCD432C2DFFCE246250F352FD328125758A7B678973B3D6E19255640EF097981FDA3AF9308C82BEA3327715CDB7167B&h=8C462ECA6E3E9354A4D798FD58B765B4BBB4A207676E75A7AA9824647B61CE30&directdownload=1&f=69671820&d=http://en.zxt2007.com/.../videoconverter_setup.exe

Remove videoconverter_setup.exe - Powered by Reason Core Security