dzsearch.exe

DzSoft Ltd

Scan dzsearch.exe - Powered by Reason Core Security
Publisher:
DzSoft Ltd  (signed and verified)

Version:
1.0.0.7

MD5:
fc8cfdaf56a8ebe190d3784064d84dbe

SHA-1:
4ca4777a32e1705a8dce2b1a68d97a19f5ec8650

SHA-256:
56356dbc29c8022a145b6f427b8d16a8e18dd7a84b7e10f21edaaf415b0f5cd6

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
12/9/2016 10:25:31 PM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
PUA.Packed.ASPack
0.98/18011

Quick Heal
(Suspicious) - DNAScan
6.14.11.00

File size:
690.3 KB (706,904 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\dzsoft\php editor\dzsearch.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
5/12/2011 10:00:00 AM

Valid to:
5/12/2014 9:59:59 AM

Subject:
CN=DzSoft Ltd, O=DzSoft Ltd, STREET="Gogolya, 12/21, k.9", L=Kremenchuk, S=Poltavska oblast, PostalCode=39605, C=UA

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
0085D243616CDC4EF591F7541D58CA39AE

File PE Metadata
Compilation timestamp:
6/7/2011 3:56:39 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:IcaudSSjdu7G5Tmp1dEdi+ehtCfk7jDKM7JfslrP1nHkfTBsvCweZw:V7SEA6Bmp/ui+ehxmLlrP1nH0F8eq

Entry address:
0x1000

Entry point:
68, 01, D0, 5D, 00, E8, 01, 00, 00, 00, C3, C3, 40, 87, 4E, 69, 2F, 95, 69, 35, 4A, E7, 5E, 92, 99, 1E, 16, 9D, C0, 7E, FB, 31, E8, 86, 6C, 0B, 8C, CA, CA, 5B, 21, 85, 6C, CA, 95, 83, B5, 48, A8, E8, 8C, ED, 7D, 3F, 7A, FA, B4, 3F, 38, 13, B6, C1, D4, 56, 81, D8, 19, FC, 3D, 81, 07, 36, C9, C1, 09, 52, 5C, 61, BB, A4, 87, 78, 1E, F1, F4, AC, C5, 1E, 7C, 58, 40, DB, B7, E3, 8B, AA, E5, 9E, 05, AD, 66, 0D, 2B, 40, 1E, 26, BE, A6, 63, 9B, 61, D1, 06, 65, B2, 35, 4A, 6D, 46, 6A, 00, CF, E3, 39, 92, 63, 62, 34...
 
[+]

Entropy:
7.8997

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
1007 KB (1,031,168 bytes)

Scan dzsearch.exe - Powered by Reason Core Security