MCReSyncFR.exe

ZMC

Zenith Infotech Ltd.

Publisher:
Zenith Infotech Ltd.  (signed and verified)

Product:
ZMC

Description:
Forceful resync for remote only.

Version:
7.00.0006

MD5:
5ace1617e3f597c0014113b22d77128f

SHA-1:
2b9dbe0b5bbf254d1d9d884b7e3be951b346edd1

SHA-256:
b9cc3b63f41d71c6756a28feec46f880033cc8a780251747cbacbe2be218d61e

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/19/2024 1:59:16 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
BACKDOOR.Trojan
9.0.1.0264

File size:
546.6 KB (559,696 bytes)

Product version:
7.00.0006

Original file name:
MCReSyncFR.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\cloud\mirrorcloud\mcresyncfr.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/7/2010 8:00:00 PM

Valid to:
10/7/2013 7:59:59 PM

Subject:
CN=Zenith Infotech Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Zenith Infotech Ltd., L=Newark, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5E0FB9239DEB5022341AA9ED530A5130

File PE Metadata
Compilation timestamp:
12/16/2011 4:30:57 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:88wSPi02+EZ33DmJ42j6QUD/8Uv06OMJJ7v2lZ/WUH:8ywl33DmJ42j6Q68Us8qlbH

Entry address:
0x3DE4

Entry point:
68, 0C, 44, 40, 00, E8, F0, FF, FF, FF, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, C8, 46, 8B, 2E, 1A, B3, 5F, 4B, BE, F3, 90, FD, C7, D0, 64, 19, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 2D, 43, 30, 30, 30, 2D, 52, 65, 53, 79, 6E, 63, 46, 52, 00, 30, 34, 36, 7D, 23, 32, 2E, 00, 23, 30, 23, 43, 3A, 5C, 57, B8, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 0B, 00, 00, 00, F6, 79, 28, 0C, 1C, 34, A1, 41, 99, 9F, BD, A0, AC, BD, 5D, ED, 01, 00, 00, 00, 98, 00, 00, 00...
 
[+]

Entropy:
6.0047

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
528 KB (540,672 bytes)

Scan MCReSyncFR.exe - Powered by Reason Core Security