zemplus23.exe

Zemplus

Spinytel Private Limited

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from zemplus.software.informer.com.
Publisher:
Spinytel Private Limited

Product:
Zemplus

Description:
Zemplus Setup

MD5:
e675a6cd23c89521af9627fca2eddd66

SHA-1:
d7f3755c1db8da1c0ced5ba9a3640d069b881c22

SHA-256:
88bf9b87836561feff0893da42c84999fd02a8799b9400fdf9488538498655ed

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 5:36:39 AM UTC  (today)

File size:
8.4 MB (8,776,461 bytes)

Product version:
2.3

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\zemplus23.exe

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:S+woUPunPDVE2Umiod1ySIL1lT4xkaIERcswEO/JU:MopS2UGPO79bERcsaJU

Entry address:
0x9C40

Entry point:
F6, C4, B2, 15, 27, 33, 1B, 54, 87, DB, 38, E6, 8D, 15, 92, 22, 28, 01, 80, C0, 55, 8D, 05, 55, 0C, CA, FE, 3B, FB, B7, 6A, 86, FF, 52, 68, 99, 5C, A4, 00, 81, FA, 4D, D8, 00, 00, 73, 05, 87, C7, F6, C1, 51, 0F, B6, FD, 8A, FC, 68, EB, 83, DE, 00, 53, 70, 09, 85, FA, F3, 8D, 0D, 60, A7, 68, AF, E8, 19, 00, 00, 00, 75, 02, FF, C6, FF, C8, 78, 02, 23, DF, 81, C2, AF, D8, F1, FF, C6, C1, 98, 81, C2, C4, 58, 0E, 00, 5E, 8D, 15, 35, FB, DA, AF, 8B, DD, B0, 92, 68, 15, B2, 4D, 00, 51, 74, 05, BA, 48, FB, CB, B1...
 
[+]

Entropy:
7.9996  (probably packed)

Code size:
37 KB (37,888 bytes)

The file zemplus23.exe has been seen being distributed by the following URL.

Scan zemplus23.exe - Powered by Reason Core Security