64-bit
exeuser scopegithub.com · known platform- File name
- balenaEtcher-2.1.6.Setup.exe
- SHA-256
- 78d1c45a55428e65ab2ac96e462ad6d77adbf7d1c0aa4b704b214bc00e1fcdfc
- Silent install
- --silent
by Balena Ltd. <hello@balena.io> · Apache-2.0
Flash OS images to SD cards & USB drives, safely and easily.
These URLs are the ones Balena Ltd. <hello@balena.io> declares in its own manifest. We do not proxy or shorten them, and we do not host a copy.
Run this against the file on disk. If the output does not match the hash below, the file is not what Balena Ltd. <hello@balena.io> published. Delete it.
Windows · PowerShell
Get-FileHash "balenaEtcher-2.1.6.Setup.exe" -Algorithm SHA256macOS · Linux
shasum -a 256 "balenaEtcher-2.1.6.Setup.exe"Expected output
78d1c45a55428e65ab2ac96e462ad6d77adbf7d1c0aa4b704b214bc00e1fcdfc
Got a different hash, or one you cannot place? Paste it into the hash checker and it will tell you which program and version it belongs to, past releases included.
The unattended switch below is the one Balena Ltd. <hello@balena.io> declares in the installer manifest, not one we guessed by trying flags.
64-bit · user scope · publisher-declared
.\balenaEtcher-2.1.6.Setup.exe --silentRun it from the folder holding the downloaded file, in a terminal opened as administrator when the package installs for all users. Silent means no window and no prompts, so check the exit code rather than waiting for something to appear: 0 is success and 3010 means it worked but wants a reboot.
| Signal | Finding | Points |
|---|---|---|
| SHA-256 hash published | 1 of 1 installers ship a SHA-256 hashWithout a published hash there is no way to prove the file you downloaded is the file the publisher built. | 30 / 30 |
| Binary provenance | 1 on a recognised distribution platformThe strongest signal against a repackaged installer: the file should come from the publisher, not from a mirror nobody vouches for. | 29.8 / 35 |
| Served over HTTPS | 1 of 1 over HTTPSAn installer fetched over plain HTTP can be modified in transit. | 15 / 15 |
| Release recency | last release about 3 months agoSoftware that has not shipped in years accumulates unpatched vulnerabilities. | 15 / 15 |
| Licence declared | Apache-2.0A declared licence tells you what you are actually allowed to do with the software. | 5 / 5 |
The installer comes from a recognised distribution platform rather than Balena Ltd. <hello@balena.io>'s own domain. That is normal for this kind of software and not a red flag by itself.
The installer on this page comes with the SHA-256 Balena Ltd. <hello@balena.io> declared, so you do not have to take our word for it: hash the file you downloaded and compare.
What this does not tell you is whether the software itself is any good, or whether you want what it does once installed. A publisher can ship something you would rather not run and the download is still authentic. We answer the question we can measure and leave the other one to you.
If Windows says “Windows protected your PC” when you run it, that is SmartScreen reporting reputation, not a malware verdict — it shows up on perfectly legitimate software from small publishers and on releases that are simply new. The reverse matters more: no warning does not mean the file was checked.
How the 95/100 score is calculated · why the source matters more than the reputation
Windows ships with a package manager, and this program is in it. The identifier below is the one Microsoft's repository uses, which is also where the download URL and hash on this page come from.
Install
winget install --id Balena.Etcher --exactUpgrade later
winget upgrade --id Balena.EtcherWhy --exact: without it winget matches on name as well as identifier, and a search that returns more than one package makes it stop and ask rather than install. Pinning the identifier is what makes the command safe to put in a script.
Not installing anything, or getting an error back? The commands that actually come up covers upgrading everything at once, what --include-unknown is for, and why winget can be missing from a machine that should have it.
The version history of balenaEtcher, each release with the download URL the publisher declared at the time and the SHA-256 to check it against. Useful when an update breaks something and you need to downgrade to a build that worked.
We do not host any of these files and never re-upload them, which is the difference between this and an old-version download site.
4DC3E898926E52F60D537E02E1306B30B8D6DB92D3719AB29A840DF046C9CAC5
B75321F3F68C6F09332E97DCA6B38744067826D114C04E6C05CBCEFF63631E62
237FFC55CC80ECAF29A1DD58456DB70E398F6CAA9D91C7E5874F3244EB7EC747
AFD199958BCA8B3D2926AC25DD385FE043280D2377A58C00752F48495406F82D
5684B1F0DB8DCFA7D19B1AEF810639D7753E48B487A20CF63F0DC524DED5D4CF
D65FCF62F303FE02117095B2F8C1FD00D873CBE98F4037C62B6D65A3281A66FF
3248227518F4AAF25F83C06A7FB476CF7F71705C234F6CE8C9CDCC98362409A6
EAEC03357A06C213F4A966F44E2F0FA5B6F19CA4F5147FE9BD61B27431E0BA5B
4C227B7FA2254393564ED437C61F9EA0300C87C5C8E6898D1C5C9262B5CC773E
BFE2AC48F2B821F743FDB9AB8BF96CE554C4365BA445CA1CCA2C9FFD8A4315BC
C4455E411BC5FFA5E0D20F99A68855E75F3B013C800C4ECD2CB3A06B4C67A4BD
D8FFA86E0C460E1AA6EE0CF6F326B79FECC0F57B4E1FDB15860A3F7E9EA868CB
9D2C2A76BBA5C115BC062C3EB76F0052F4B919319D9178C4CEC312C0BC32B9B3
62AE9AEF83C720A59C996150EDD6BDD7861982495F4A0475A0925AE088C93E25
4047A76CB269A143D98DBA3838006B24DB189FC7DCBC57550C50B082BCC6E511
28B6B055096913AF60B9DF814CD1B1CA003B3B13C97B825BC9CB9F8322E7978B
C627BE7B587900240F253AADF7E751C1149FD3C5F0BE382AD9EFA1DB10C9C5F2
FB786F8069C0F5BE319B1DA8251A2721809E60F16EA39B99F2DD3EE9D86F6F31
0FF379126F719D789CF869D65CE13ABF45B0F1EC3CB4991A1B2D2CF42E8F07D6
9D96CF06A03293A5B11280BE1502D7D030B31B2D3FE91A90FF3C9ED22C13D7BE
The file names, so you can tell what you have. Their hashes are in the hash checker and in the downloadable archive.
Publishers take old builds offline without warning, so a link here can stop working even though the hash stays correct forever. If you already have the file, the hash is what matters: it tells you whether what you have is what they published.
Every balenaEtcher version with a published manifest, newest first. The most recent ones are listed above with their file names and hashes.
Matched on the categories Balena Ltd. <hello@balena.io> and others declare in their own manifests, so the grouping is theirs rather than ours. Each one has its official URL and hash on the same terms as this page.
Not related to balenaEtcher — just other entries, each with its own official URL and published hash.