-snip-
which means: "Attention: this key is not certified with trust signature"
Does the both software I downloded are corrupted?
Can someone help me?
If the primary key fingerprint that appears matches
ThomasV's fingerprint and the Electrum file with its signature matches ("Good signature ..." / "Bonne signature ..."), then the file is original.
You can ignore this:
WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
as it simply means you have not established a web of trust with other GPG users
However, if the Electrum installer file and its signature do not match the ThomasV public key, it will appear like the following example. It is advisable not to use the installer file.