zinFrameServer.exe

zinFrame Server

Zaag Technology Co.,Ltd

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘zinFrameServerV3’.
Publisher:
ZaagTech Co., Ltd.  (signed by Zaag Technology Co.,Ltd)

Product:
zinFrame Server

Description:
zinFrameServer

Version:
3.7.1.0

MD5:
4e2da711e4264ef4c0b04b7ffd54d889

SHA-1:
e63a171701261357157571dcd92f073c38deb338

SHA-256:
3c794c811d359bce47fba484af8055b69847ecb06b51aa49aaca44a01338bfbf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 6:20:21 PM UTC  (today)

File size:
4.7 MB (4,971,800 bytes)

Product version:
3.7.0.0

Copyright:
ZaagTech Co., Ltd. All rights reserved.

Original file name:
zinFrameServer.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\zaagtech\zinframeserver\zinframeserver.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/19/2011 10:17:19 PM

Valid to:
4/28/2014 3:31:50 AM

Subject:
CN="Zaag Technology Co.,Ltd", OU=Software, O="Zaag Technology Co.,Ltd", L=HuZhou, S=Zhejiang, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121E9B7C22CD24452CA95DD606C46791229

File PE Metadata
Compilation timestamp:
5/14/2012 11:22:50 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x21E350

Entry point:
8B, FF, 55, 8B, EC, E8, 56, 1E, 01, 00, E8, 11, 00, 00, 00, 5D, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 6A, FE, 68, 00, CA, 6E, 00, 68, 50, 85, 62, 00, 64, A1, 00, 00, 00, 00, 50, 83, C4, 98, 53, 56, 57, A1, 20, A2, 6F, 00, 31, 45, F8, 33, C5, 50, 8D, 45, F0, 64, A3, 00, 00, 00, 00, 89, 65, E8, C7, 45, 90, 00, 00, 00, 00, 8D, 45, A0, 50, FF, 15, 30, 14, 68, 00, 83, 3D, 04, 53, 70, 00, 00, 75, 0E, 6A, 00, 6A, 00, 6A, 01, 6A, 00, FF, 15, 2C, 14, 68, 00, E8, 8E, 01...
 
[+]

Code size:
2.5 MB (2,617,856 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
zinFrameServerV3

Command:
C:\Program Files\zaagtech\zinframeserver\zinframeserver.exe


Scan zinFrameServer.exe - Powered by Reason Core Security