zemplus23.exe

Zemplus

Spinytel Private Limited

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from zemplus.software.informer.com.
Publisher:
Spinytel Private Limited

Product:
Zemplus

Description:
Zemplus Setup

MD5:
b1f63e636c87c9901c07a80e0429b737

SHA-1:
a317ed22f48eb819bf3b639d9da6d49bb6ce8584

SHA-256:
340749fe10b7bf538ef4e9c340e0a326eb533d6cde621e16e0afcfd8e3efa51a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 5:20:03 AM UTC  (today)

File size:
8.4 MB (8,768,269 bytes)

Product version:
2.3

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\zemplus23.exe

File PE Metadata
Compilation timestamp:
6/20/1992 2:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:t+woUPunPDVE2Umiod1ySIL1lT4xkaIERcswEO/JU:VopS2UGPO79bERcsaJU

Entry address:
0x9C40

Entry point:
80, D6, BF, F7, C5, 3D, 77, ED, 72, 69, DE, 09, 8F, 3B, 11, 8A, E3, 8D, 05, 84, A5, 25, AE, 81, D6, A3, 89, 34, E4, 8D, 3D, 11, 29, 56, 85, 30, E1, 69, F9, B4, 9E, 79, E3, 88, DE, 8A, D5, FF, CA, FE, C8, BA, C8, F4, 19, A3, 55, 89, F1, F6, C6, A0, F6, C2, CA, 5B, 78, 03, F6, C7, 73, 8B, C2, 88, C5, 0C, 11, 53, 89, F0, 89, F8, 5E, 85, FF, 01, F8, 8A, E5, 85, CE, 72, 07, BF, CD, 3B, FA, CD, 0B, C6, 03, EE, C6, C5, 04, 87, D8, 85, D1, F2, 87, EE, 69, F8, 54, 92, 95, 42, 88, DF, 0F, AF, C5, 3A, DB, 00, E9, 14...
 
[+]

Entropy:
7.9996  (probably packed)

Code size:
37 KB (37,888 bytes)

The file zemplus23.exe has been seen being distributed by the following URL.

Scan zemplus23.exe - Powered by Reason Core Security