denzi_setup.exe

Denzi App Store

Denzi

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is installed with Denzi App Store. The file has been seen being downloaded from www.applicationsbundlevault.com and multiple other hosts.
Publisher:
Denzi

Product:
Denzi App Store

Version:
1.0

MD5:
45f33cc06d4da5dd7c9b333558630fe1

SHA-1:
cf6a580d09c5e01038b0c8583755405a04428011

SHA-256:
dfa3444f21e0204c3de86a46a7c3d794401fc8e13f9adcea483fc3ac3491871d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/10/2024 1:19:28 PM UTC  (today)

File size:
1.3 MB (1,377,255 bytes)

Product version:
1.0

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\denzi_setup.exe

File PE Metadata
Compilation timestamp:
12/6/2009 6:50:52 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:HyRe/X3rboKIPWytOj6h+1i9QTZrLgGxhDMpR84tZkqm7l5:HyRIX7b1IPL1zSsuNmRRDkT5

Entry address:
0x30FA

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 18, EC, 42, 00, E8, F1, 2B, 00, 00, A3, 64, EB, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 98, 8F, 42, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, 60, E3, 42, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, 40, 43, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Entropy:
7.6191

Packer / compiler:
Nullsoft install system v2.x

Code size:
23.5 KB (24,064 bytes)

The file denzi_setup.exe has been discovered within the following program.

Denzi App Store  by Denzi
Publisher's description - “Denzi App Store is an application which finds for you the latest available versions of your installed software and installs them automatically. Denzi does everything for you, searches, finds and show you the latest versions avaialble.”
www.denzi.com
57% remove it
 
Powered by Should I Remove It?

The file denzi_setup.exe has been seen being distributed by the following 5 URLs.

http://www.applicationsbundlevault.com/r9ElOo5dCbyAUynql68jTbCer9SKv2shuneBIlXVHx5FD7GejFGXt4Ed fpe24qdmiokhwSeK6B90DCaIggF6a3_y6DKRnTIO78BCepVecmsqSGFtJsKXHNvUXBGeT6N4MTM3eoqqZvoNI9qVBJsmMDoTreXC4t48862C6bOn_JEYJKQDdT3wD5OQUJKjbIhY Q6yysITXcrAJO Q6L9SwcGM7QUQ0XufSxWT6UthTLLmGGGLpRNXbPlXzyXsp6dNjfN6dXyyPMtyzebxO2mDxVVLj51zSyU 5rdUIpNzN7oMrmRInx8FWgMZfNbLUkPZeKm1tZeh0BBuWcokSh69p8lCLfTLnPkBvoTzP7OfBkMaumTTJ05IVDigf9H3JTejQnlBGOSE foXplEnFH53BxzuE9gnOS8XlH3ERbNB4BMtyZqx eJocQpqLszkpOV8YKUFYdg9JVvrWS5nVi2BqBmndai9t8VD2ZmmKvib1 k7NQq0RY_JF30rKDi4LgLTRFztia7ctq5PwDEJzTuJF2VQBp jw==-ixGAaHR0cDovL3d3dy5kZW56aS5jb20vRGVuemlfc2V0dXAuZXhlAw==-e

http://www.applicationsbundlevault.com/1NRM8Zhc1VB6eyEPYtY5coVvPS6_e5KDMzg7PgNRaweT0pG83_jeOYte9Qyduaa8tOEY3KW9DmiVd0NiKH H F9QTAlhsjXHG9NYpIxd1C26qIzyWIi7xNHO81CIdM7gIpJEShLEqG fLqfRpov0Rl9wr pDcKD6IatsUVlAeAOnPNv2gMW_tC4MrOM2wg92mekgWHIbfC88KDij8Ht gWLZOaNtpidpA8hghrhM6laKZQbiLwO7zZESfOkIl5fwsQ1xVj8zTk Lpfl6p0cI5rOa2UV_A4rixK4HeLDpur08p1LPFZeZnQN7ttNeY5NJuLfczP4Z7EvF6NPo5oslLQMURAhP66q2bUYRwhld59HvvUOg0U61bFO c bSgmhsf1gLEdVPKwjX0WfSi8gLrPPC1VMLET h nICmmVdsGJHE7u1JGfWYv _ jn7Fie4XI0cIyZAompELivK3vkCpiudbSky2gnJofARQIZF6oa7zsBeq76hZ5yVxwiwz8 Q13tG1 cYuJU24PpNcTF8XuQXpPFAqA==-ixGAaHR0cDovL3d3dy5kZW56aS5jb20vRGVuemlfc2V0dXAuZXhlAw==-e

http://download.informer.com/.../denzi_setup.exe

Scan denzi_setup.exe - Powered by Reason Core Security