zbrush3.1_trial_setup.exe

ZBrush3

Pixologic, Inc.

The program is a setup application that uses the InstallShield Setup installer. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
Pixologic   (signed by Pixologic, Inc.)

Product:
ZBrush3

Description:
Setup Launcher

Version:
3.01.000

MD5:
0a9070783af649b3e39f12ede420ec36

SHA-1:
ad5668bf8e244180ac8de1c6f0109be57fa41903

SHA-256:
9f59a7ece7aaa0afcd1882bc631f5d7ca5c4a22e0177cac258fc3ea732816dd8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/24/2024 5:21:42 PM UTC  (today)

File size:
35.6 MB (37,346,184 bytes)

Product version:
3.01

Copyright:
Copyright (C) 2007 Macrovision Corporation

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Installer:
InstallShield Setup

Language:
English (United States)

Common path:
C:\users\{user}\downloads\dl\zbrush3.1_trial_setup.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
5/8/2007 2:00:00 AM

Valid to:
5/8/2008 1:59:59 AM

Subject:
CN="Pixologic, Inc.", O="Pixologic, Inc.", STREET=320 West 31st Street, L=Los Angeles, S=CA, PostalCode=90007, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00D96935B9F75A279715FC2C65EE0DD9B9

File PE Metadata
Compilation timestamp:
4/19/2007 3:03:15 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
786432:ReOIikPwQtf0xlcQrShX0KnwZMkHGfMiXH5hAwJ1i0:ReOIn5f0xlcSe0KnYMep252w1i0

Entry address:
0x2996C

Entry point:
55, 8B, EC, 6A, FF, 68, C8, 70, 43, 00, 68, 58, CB, 42, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 78, 61, 43, 00, 33, D2, 8A, D4, 89, 15, 04, 56, 44, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 00, 56, 44, 00, C1, E1, 08, 03, CA, 89, 0D, FC, 55, 44, 00, C1, E8, 10, A3, F8, 55, 44, 00, 6A, 01, E8, 15, 1F, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, 30, 10, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
212 KB (217,088 bytes)

The file zbrush3.1_trial_setup.exe has been seen being distributed by the following 7 URLs.

http://gsf-cf.softonic.com/ad5/668/.../file?SD_used=0&channel=WEB&fdh=no&id_file=44972&instance=softonic_es&type=PROGRAM&Expires=1445489946&Signature=WxzTEZwe~tIKYFNq13eJeBkjdZvixDc0DfpfQGuxVGnw1~lDT95vXYFXIWZ1E7CMRc-n7I~uT6kYokP2uC4ewuikBSOu7x54lC9Klv9BbEmxe0bzLb6DcCxj0cLf9dKNg3uG6C~XTS2Qh7UIMZK3nbrvl8Jka7uLmln2k4D7Ayg_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=ZBrush3.1_Trial_Setup.exe

http://i_eazel-com_zbrush-3-1.foratirewoid.com/crawled_soft/5/2/.../52535-53085-zbrush.exe

http://gsf-cf.softonic.com/ad5/668/.../file?SD_used=0&channel=WEB&fdh=no&id_file=44972&instance=softonic_es&type=PROGRAM&Expires=1478251577&Signature=YjrGLkIc3VMRSRIFpyxR5U-CLFWhzWMLv1gpyydX8sz5FhI2ih~~HmULsuI5Leegs5AvLlXbRe9Jpakc4CfjAUsVPqiuavvaT5ld1AL0Gm1-nvZUVlNM61UO74RJEgaX3SDV0rzDvLCEWtqvg7F5a5fZBNQKi3-2pbUPLhz9sNA_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=ZBrush3.1_Trial_Setup.exe

http://www.brothersoft.com/d.php?soft_id=264965&url=http://usfiles.brothersoft.com/photograph_graphics/.../ZBrush3.1_Trial_Setup.exe&name=ZBrush

http://gsf-cf.softonic.com/ad5/668/.../file?SD_used=0&channel=WEB&fdh=no&id_file=44972&instance=softonic_es&type=PROGRAM&Expires=1447044978&Signature=GlyKmv3HSHWVQ1SvxljpgWqFnvNuOEYtsGUjWo3SpGIEKPvI5v-q6CZzN8biIK7soJ10kPTekIgaIjxJW7kGhK68i6rCRcRO5CWlhhb-eP2~qx2d4rAmBJyLnA7B604ZWwhcgjCiJ-AQcg3l50JzSvskFkUkD7EwdiD7lPN3Hkw_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=ZBrush3.1_Trial_Setup.exe

http://gsf-cf.softonic.com/ad5/668/.../file?SD_used=0&channel=WEB&fdh=no&id_file=44972&instance=softonic_es&type=PROGRAM&Expires=1455849305&Signature=Cs5NRo8pLa2LP6WnlAbGghELQOudlKroZRF61O6OTz4tyl6lQlegF2dx1esqGbYt6Qg3hfhtB5Fw4iu3tq7SSVGLPT5x3iAsB~PxQxNbg6xueXgPLhHaSP~40gr0hrCgtzBEIy~msV9lCAXiZBldZFNemphuJEwcYczQc6qDi48_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=ZBrush3.1_Trial_Setup.exe

Scan zbrush3.1_trial_setup.exe - Powered by Reason Core Security