ZenMateSetup.exe

BrandedSetup

ZenGuard GmbH

Publisher:
ZenGuard GmbH  (signed and verified)

Product:
BrandedSetup

Version:
1.0.0.0

MD5:
9c574a2867bb9d2ff1b967591fffd756

SHA-1:
b2b2357a5f47fb0352bf2e2ecab27b4ae1b48ab3

SHA-256:
7c71fcb56b06eb0aec95342c83802a718accbd8607dac488b3413b43e47043ac

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/1/2025 7:09:27 PM UTC  (today)

File size:
120.8 KB (123,656 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016

Original file name:
ZenMateSetup.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\zenmatesetup.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
2/1/2016 7:49:07 AM

Valid to:
2/1/2019 7:49:07 AM

Subject:
CN=ZenGuard GmbH, O=ZenGuard GmbH, L=Berlin, S=Berlin, C=DE

Issuer:
CN=StartCom Class 3 Object CA, OU=StartCom Certification Authority, O=StartCom Ltd., C=IL

Serial number:
116A614A11A894343DC74417CBADEB9B

File PE Metadata
Compilation timestamp:
3/3/2016 5:35:46 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
48.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:AqyMgfTVHBD8x4her87JMyqxSh9r3/Ogc:Af8x4MtyqxSLaF

Entry address:
0x158B2

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.6487

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
78.5 KB (80,384 bytes)

The file ZenMateSetup.exe has been seen being distributed by the following 17 URLs.

http://en.softonic.com/sads/tracker.php?ev=c&co=US&sid=8b08aa663501f729ad8094bce5c58901&upv=39aca996da547671d09dde68098e95e3&z=results&sk=0&abp=1&params=F39B2A32BFC101987B1458170C278E032123FF0E09F5565AD6A3C9E074A2DA09277A9F2B702D8CF786D1BF90D7B593566FEEA3B2517A6CEDACCA55E8E1188992BE268A383F2FDF950B07775169CE61C4CF86D5AC47F070354BCD3E39C360FD65E3DE04ACB02C573A92E7EA244DC87B28618AA8328429E0DED8E1E10EE5627E9ED52CFAFB566D4D12EEA4B35C89CA5C713D45CEFB451C622FBF3640F092A924C6B9612AD3F8A91821A154887C9C528CA5&h=FCF78A25B1BB6AECB7A44F3E2EE6E099AA5BCD80FAEC5AEB995CBFC11498728E&directdownload=1&f=69716476&d=https://s3-eu-west-1.amazonaws.com/zenmate-windows-update/installer/.../ZenMateSetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=US&sid=58cc4ca3f79af0f8937df34974c97f20&upv=e52e85126b50ac36ac5da406a8e95be9&z=results&sk=0&abp=0&params=F39B2A32BFC101987B1458170C278E032123FF0E09F5565AD6A3C9E074A2DA0931766BC262141BA0343545120DAA5405524D8E8C29C099C24C0B20F496A004175B120641EB4F7EEE59700C78C6D2FB54762DA2A8B3F355E3C3598E9DC1EFEBD2BBEB8DDD397DCC6B2656AFA89F0C2BBC136A88089025191EA4AAF6FCBE2D4BFBE7CA75A6697F69C33A13BE5EB2D044095A8D0391A152A05F976CE225CAB1CDD03EA2BE6F8F7FBCB85245AC6D2A30A86D&h=944880FD6A94D58CE2282D315BCEAC77B0B5579F4D59B5A5881E1A28D03F1125&directdownload=1&f=69716476&d=https://s3-eu-west-1.amazonaws.com/zenmate-windows-update/installer/.../ZenMateSetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=US&sid=67d5e2f443ee2f7854a1451b4218e6ec&upv=4f9fb56e15e541b79eb2dc7cac3b1329&z=results&sk=0&abp=0&params=F39B2A32BFC101987B1458170C278E032123FF0E09F5565AD6A3C9E074A2DA09277A9F2B702D8CF786D1BF90D7B59356F302069BBDB709F9F7B966C45F6D20F6A560C17DFA2822863419CCCE880BB97139AD945B37C7443AC8377D88511700DEC11AEC2D5A5475FE803AC1AC1B2E6FB0B7F8D06C2F3302F5A07E0746EBECDB95E1778AC8DC4852CC99B6A343BBFB51E91418317FB1BA7594E5EEDA26C67412C3D73D541771657026A920E81126C724F2&h=38EF7B8ACC480FA2DE11E790A99D60F2EADE2D1E4A0347B6CBAA99497AACB1EF&directdownload=1&f=69716476&d=https://s3-eu-west-1.amazonaws.com/zenmate-windows-update/installer/.../ZenMateSetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=GB&sid=f7863e69ad9365559dec339c3a227b21&upv=38ac5568b2752fd336bda21a915f2fa9&z=results&sk=0&abp=1&params=F39B2A32BFC101987B1458170C278E032123FF0E09F5565AD6A3C9E074A2DA091EC17A6D3D3A31B1D0B4B2A4EA6248DB7F50F282949BC926C542150F5D520BC36F4272DC60E3B1A9DFCF9C5705620E5F9DA5C1EA9D50290B4CBBC67417299068FFF6A602DAE3D9090E582B9C0FACCA946AD74F231A2B98EEA9288529CAAF088971DB4905658B670F852FB96B11DF0548D172F53EB8C38C477D416CF14CFCF1F2&h=0861CFC6382FFDCD81384C33E86CD52C8354265CE94CC7B4CCDE7ACD319D26B3&directdownload=1&f=69716476&d=https://s3-eu-west-1.amazonaws.com/zenmate-windows-update/installer/.../ZenMateSetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=US&sid=4c81b493cea26382e49a4c20a4273926&upv=a87283501c00f96a49e49682c229b2e9&z=results&sk=0&abp=1&params=F39B2A32BFC101987B1458170C278E032123FF0E09F5565AD6A3C9E074A2DA095E273D0A7F485312F44B78D0F08C3ECD933EBC2957DAA1BF2A3AE5E75A984A40DFEABB7FB5594E3FB87FC173C5AA9A6E231F72536F78D1F029818E9F4E59D34BD5F86A6ACDE6DBA23BE82FD7FC520AF45CF3B27B1BF499232B9FA766FCFD00C4A314A312D41360753AB2BC94A6FF6726C9C6D59EF0687C3D727FE67B5A1121467ECF43E517A9BCA788EA2B30C15A4E2C&h=1BADF13BEE48E49819BAFFFD265972446DFD33785D121FA4EF35A861F2001D09&directdownload=1&f=69716476&d=https://s3-eu-west-1.amazonaws.com/zenmate-windows-update/installer/.../ZenMateSetup.exe

Scan ZenMateSetup.exe - Powered by Reason Core Security