androidsync.exe

Android-Sync

Android-Sync.com

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘AndroidSync’.
Publisher:
http://www.android-sync.com  (signed by Android-Sync.com)

Product:
Android-Sync

Version:
1.1.1.1

MD5:
1f6515396fa695611ec26d7aacdf0170

SHA-1:
55353cb286b87c35b6a3eaa1573b3cbed3efedfc

SHA-256:
e2da35382f57e0e9fc7b984336a363d9ec3faa125007bab5f88d012d8443c708

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 7:57:28 PM UTC  (today)

File size:
5.8 MB (6,107,568 bytes)

Product version:
1.1.1.1

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\android-sync\androidsync.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
10/18/2011 5:00:00 PM

Valid to:
10/18/2016 4:59:59 PM

Subject:
CN=Android-Sync.com, O=Android-Sync.com, C=CN

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00DEDE569E4228E6C24F93F8763D6977F0

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:YdOYvRUTIYvAkmjee5fh73rw1gY/ajWPh+DipCDcFWU77hObfX:URUTLYjee5f5sGWKYCoFWU77hIX

Entry address:
0x37D618

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 20, CD, 77, 00, E8, 4F, 9F, C8, FF, 8B, 1D, 8C, 01, 7C, 00, E8, E4, CF, FF, FF, 84, C0, 75, 07, E8, E3, CF, FF, FF, EB, 79, 8B, 03, E8, 06, 21, CF, FF, 8B, 03, BA, C8, D6, 77, 00, E8, E2, 1C, CF, FF, 8B, 0D, A8, 03, 7C, 00, 8B, 03, 8B, 15, 98, C9, 77, 00, E8, FF, 20, CF, FF, 8B, 0D, 80, F5, 7B, 00, 8B, 03, 8B, 15, 90, C3, 70, 00, E8, EC, 20, CF, FF, 8B, 0D, 98, FD, 7B, 00, 8B, 03, 8B, 15, 50, A8, 77, 00, E8, D9, 20, CF, FF, 8B, 0D, 08, FA, 7B, 00, 8B, 03, 8B, 15, 40, E9, 6F...
 
[+]

Entropy:
6.5702

Developed / compiled with:
Microsoft Visual C++

Code size:
3.5 MB (3,655,680 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AndroidSync

Command:
C:\Program Files\android-sync\androidsync.exe -m


Scan androidsync.exe - Powered by Reason Core Security