zSpyUpd.exe

zSpyUpd

Zenith Infotech Ltd.

Publisher:
Zenith Infotech Ltd.  (signed and verified)

Product:
zSpyUpd

Description:
To update spyware definition on agent.

Version:
1.08.0001

MD5:
b0dee7052be96e303c14a0a2046847f2

SHA-1:
e75dc9ffd059d1a049cd5c941dd6ed2bb70e4b69

SHA-256:
a8e9c3f6f351f006e1af7abd7574a3bfc466ee63cffe847ab444cad4de17d008

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/19/2024 9:05:28 PM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/VBTrojan.17H
v6.4.6.1.107

File size:
112.8 KB (115,528 bytes)

Product version:
1.08.0001

Original file name:
zSpyUpd.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\saazod\basecomponents\zspy\zspyupd.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
12/1/2008 7:00:00 PM

Valid to:
12/2/2011 6:59:59 PM

Subject:
CN=Zenith Infotech Ltd., O=Zenith Infotech Ltd., STREET=39675 Cedar Blvd SUite 240B, L=Newark, S=CA, PostalCode=94560, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00B756011DAA5ECFE79D4D67BF18EB4A18

File PE Metadata
Compilation timestamp:
5/5/2009 4:53:29 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:e5K7l6vbzdWhJcPR0P4bkQkq3NLtLdxfbdx7R4pS:eqP4FNbdxfpx94w

Entry address:
0x1FA0

Entry point:
68, 90, 20, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, 6F, 20, 39, 81, 0F, CD, 88, 46, AE, D0, 4B, F8, 02, 4A, D3, AA, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 61, 73, 00, 4E, 61, 6D, 7A, 53, 70, 79, 55, 70, 64, 00, 00, 00, 00, 00, 01, 00, 01, 00, E4, 24, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, 68, 25, 40, 00, 80, 80, 41, 00, 00, 00, 00, 00, 30, 43, A6, 03, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 20, 20, 40, 00...
 
[+]

Entropy:
5.4465

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
92 KB (94,208 bytes)

Scan zSpyUpd.exe - Powered by Reason Core Security