zmoveslot.exe

Z-TapeLoader

Andreas Baumann

Publisher:
IMU-Berlin - Andreas Baumann  (signed by Andreas Baumann)

Product:
Z-TapeLoader

Description:
Tape-Autoloader

Version:
5.04.0003

MD5:
acabf3a9a71b60e80fd24aa6ba0aa379

SHA-1:
4b72213f387ef5824ca44c1460dfc560cbcc4fb9

SHA-256:
f671757eafa255bb5319c43887b4b9dc11fa3a5893239b48bf86c167b782d9d2

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/25/2024 11:33:25 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Clam AntiVirus
PUA.Packed.PECompact-1
0.98/18155

File size:
460.1 KB (471,104 bytes)

Product version:
5.04.0003

Copyright:
© A.Baumann 2009 - 2012

Original file name:
zmoveslot.exe

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\Program Files\z-datdump\zmoveslot.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
1/9/2012 4:00:00 PM

Valid to:
2/18/2014 3:59:59 PM

Subject:
CN=Andreas Baumann, OU=SECURE APPLICATION DEVELOPMENT, O=Andreas Baumann, L=Berlin, S=Berlin, C=DE

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
753BC7598F9981E43A04D477D6382D3D

File PE Metadata
Compilation timestamp:
5/9/2012 6:34:23 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:ds0XHiKLrTasjvscDotKQS6iwa9R7yp41E32cnu:KKLrTpscQBiwQRGSODu

Entry address:
0x4324

Entry point:
B8, 20, 8A, 51, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, F4, 6D, E2, 63, 68, CC, AE, 23, AB, 3C, 4F, 90, 98, F8, 07, 72, 10, 02, AE, 26, C8, 17, 27, 1D, 50, 3A, FC, 1C, 41, 58, 63, E4, 49, 2B, 68, 45, 0D, DB, 55, E4, 4C, B0, B0, 40, 2E, 52, 1F, 0C, 90, 37, 2A, B7, 3F, A9, DA, 20, DD, C2, 95, 60, 04, B1, A3, 4D, 13, C3, F3, 63, AB, 09, 36, DE, 95, 98, 3E, 23, 1F, 48, E8, 34, 8D, F3, 8D, 18, 3B, 0B, C4, 36, B6, 70, C6, 3E, 44...
 
[+]

Entropy:
7.9531

Packer / compiler:
PECompact v2

Code size:
1 MB (1,064,960 bytes)

The file zmoveslot.exe has been discovered within the following program.

Z-DATDump  by IMU Andreas Baumann
www.tape-backup.de
About 8% of users remove it
 
Powered by Should I Remove It?

Scan zmoveslot.exe - Powered by Reason Core Security