mfchboot.exe

MirrorFolder

TECHSOFT

Publisher:
TECHSOFT  (signed and verified)

Product:
MirrorFolder

Description:
MirrorFolder Native drive letter checking program

Version:
5.0.280

MD5:
ddac224c63b578a23a9907b7921555da

SHA-1:
e395aa7ebd9a0fa1238d758a424b904b9484b591

SHA-256:
5e40b296ed13fb9484aced97a77c3ac7f88629ee6264457c6a4a7b7093f4190b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:18:54 PM UTC  (today)

File size:
14.5 KB (14,888 bytes)

Product version:
5.0.280

Copyright:
Copyright © 2001-2011 Techsoft

Original file name:
mfchboot.exe

File type:
Executable application (Win64 EXE)

Language:
Language Neutral

Common path:
C:\Windows\System32\mfchboot.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
10/13/2010 10:50:25 AM

Valid to:
10/13/2013 8:32:57 AM

Subject:
E=support@techsoftpl.com, CN=TECHSOFT, O=TECHSOFT, L=Kolkata, S=West Bengal, C=IN

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012BA6CBFC36

File PE Metadata
Compilation timestamp:
9/14/2011 10:23:21 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
192:J9PEqSilDB+gwujWxMu8LOeuL+5MNfzg5x7R:roSDB+VujWx18yh+6NE5x7R

Entry address:
0x1AE0

Entry point:
48, 8B, C4, 48, 83, EC, 78, 48, 89, 58, 08, 48, 89, 68, 10, 48, 89, 70, 18, 48, 89, 78, 20, 4C, 89, 60, F8, 4C, 89, 68, F0, 4C, 8B, E1, 48, 8B, 49, 20, 4C, 89, 70, E8, 4C, 89, 78, E0, 48, C7, 40, B0, 00, 00, 00, 00, FF, 15, 5C, F5, FF, FF, 4C, 8B, F8, 48, 8D, 4C, 24, 28, 48, 89, 44, 24, 38, 33, C0, BF, 01, 00, 00, 00, 33, ED, 4D, 85, FF, 48, 89, 4C, 24, 30, 4C, 8D, 74, 24, 28, 89, 44, 24, 20, 8B, DF, 0F, 84, 80, 02, 00, 00, 49, 39, 47, 78, 49, 8D, 77, 70, 48, 8B, D6, 74, 05, 66, 39, 06, 75, 17, 49, 39, 47...
 
[+]

Entropy:
6.0683

Code size:
4.5 KB (4,608 bytes)

Scan mfchboot.exe - Powered by Reason Core Security