Launcher.exe

ZoneAlarm

Check Point Software Technologies Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘ZoneAlarm Installer’.
Publisher:

Product:
ZoneAlarm

Version:
14.1.11.0

MD5:
19e90cc962de560da7fc2970864b0a3f

SHA-1:
8ca441ade45e413bf1aeff653d1b24e0efc10f67

SHA-256:
83943fdb71395477539ad9c2bf85e2148550674252061b8b299117b55ceb6347

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 12:11:30 PM UTC  (today)

File size:
429.1 KB (439,408 bytes)

Product version:
14.1.11.0

Copyright:
Copyright © 1998-2015, Check Point, LTD

Original file name:
Launcher.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\checkpoint\install\launcher.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/12/2014 1:00:00 AM

Valid to:
7/11/2017 12:59:59 AM

Subject:
CN=Check Point Software Technologies Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Check Point Software Technologies Ltd., L=Ramat-Gan, S=Ramat-Gan, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
47E81C30F2CA2304E8F8BC304E44AB6F

File PE Metadata
Compilation timestamp:
11/7/2015 2:55:25 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:VrJJNGrknmzi6W4ISoQMJURS8L+SgNki+u2EQ4nH/TBqtPNUCEwz9:3XGIn0WOMJURp6Nki4EQ4nH/TstlPx

Entry address:
0x21E48

Entry point:
E8, 2A, 81, 00, 00, E9, 79, FE, FF, FF, E8, 34, 5B, 00, 00, 8B, 48, 6C, 3B, 0D, E8, 57, 45, 00, 74, 10, 8B, 0D, 00, 57, 45, 00, 85, 48, 70, 75, 05, E8, E3, 2D, 00, 00, A1, AC, 4D, 45, 00, C3, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 44, 24, 0C, 53, 85, C0, 74, 52, 8B, 54, 24, 08, 33, DB, 8A, 5C, 24, 0C, F7, C2, 03, 00, 00, 00, 74, 16, 8A, 0A, 83, C2, 01, 32, CB, 74, 72, 83, E8, 01, 74, 32, F7, C2, 03, 00, 00, 00, 75, EA, 83, E8, 04, 72, 12, 57, 8B, FB, C1, E3, 08, 03, DF, 8B, FB, C1, E3, 10, 03, DF, EB, 1B, 5F...
 
[+]

Entropy:
6.1228

Code size:
265 KB (271,360 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ZoneAlarm Installer

Command:
"C:\Program Files\checkpoint\install\launcher.exe" "C:\Program Files\checkpoint\install\install.exe" \r install \c "C:\Program Files\checkpoint\install\install.xml"


Scan Launcher.exe - Powered by Reason Core Security