zam - malware.exe

ZAM

Zemana Ltd.

Publisher:
Zemana Ltd.  (signed and verified)

Product:
ZAM

Version:
2.11.1.366

MD5:
de83f8dc4c3f1bc6c4d1aef980aa480b

SHA-1:
e5a7881b9abbaf8dd66de6859244490824acdaf9

SHA-256:
9922a22002ca314240320e20564f604bf6a3daf93a0950bdb714795cee2ba466

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 5:52:40 AM UTC  (today)

File size:
11.5 MB (12,036,464 bytes)

Product version:
2.11.1.366

Copyright:
Zemana Ltd. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
12/16/2014 12:00:00 AM

Valid to:
12/20/2017 12:00:00 PM

Subject:
CN=Zemana Ltd., O=Zemana Ltd., L=Edirne, C=TR

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0210230FD364B469091B8A4440145E18

File PE Metadata
Compilation timestamp:
5/8/2015 3:42:11 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
98304:kDdLjzkz+LhGxpdBjyB+syYjwb/S5iIe52FVqT2FYoVibPWDMRDyEYBsIepyR7d7:SdrDLCr1S/FdFT1QRpgVd7

Entry address:
0x2D18

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, AC, 90, AA, 00, A1, 9F, 90, AA, 00, C1, E0, 02, A3, A3, 90, AA, 00, 52, 6A, 00, E8, 4B, 3F, 6A, 00, 8B, D0, 89, 15, A7, 90, AA, 00, E8, A4, 29, 69, 00, 5A, E8, 86, 25, 69, 00, E8, F9, 2A, 69, 00, 6A, 00, E8, DA, F5, 69, 00, 59, 68, 48, 90, AA, 00, 6A, 00, E8, 1F, 3F, 6A, 00, A3, A7, 90, AA, 00, 6A, 00, E9, 05, E4, 69, 00, E9, 0C, F6, 69, 00, 33, C0, A0, 91, 90, AA, 00, C3, A1, A7, 90, AA, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9...
 
[+]

Entropy:
6.7791

Code size:
6.7 MB (6,979,584 bytes)

The file zam - malware.exe has been seen being distributed by the following URL.

Scan zam - malware.exe - Powered by Reason Core Security