bzserv.exe

Backblaze Inc

It runs as a separate (within the context of its own process) windows Service named “Backblaze Service”.
Publisher:
Backblaze Inc  (signed and verified)

MD5:
231ff199dbba16c4bc22412e5d7c5217

SHA-1:
160320f2e1e7d475442930f788607470fe8f6847

SHA-256:
bcf534c6f0f9260060cee80f86f56a4a53f3f924d59498bc59dc76562fd5af2c

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/29/2024 1:49:00 AM UTC  (today)

Scan engine
Detection
Engine version

Baidu Antivirus
Win32.Trojan.WisdomEyes.16070401.9500
4.0.3.17114

File size:
434.2 KB (444,584 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\backblaze\bzserv.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
3/25/2015 1:55:12 PM

Valid to:
4/29/2018 10:08:38 AM

Subject:
E=production@backblaze.com, CN=Backblaze Inc, O=Backblaze Inc, L=San Mateo, S=CA, C=US

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121D8ED82581D8301365DDB9FFD4119FCCD

File PE Metadata
Compilation timestamp:
1/12/2017 1:49:27 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
14.0

Entry address:
0x2BBCF

Entry point:
E8, 5C, 08, 00, 00, E9, 7A, FE, FF, FF, 55, 8B, EC, F6, 45, 08, 01, 56, 8B, F1, C7, 06, EC, 53, 44, 00, 74, 0A, 6A, 0C, 56, E8, 94, FD, FF, FF, 59, 59, 8B, C6, 5E, 5D, C2, 04, 00, 6A, 0C, 68, 60, 9A, 46, 00, E8, C8, 07, 00, 00, C6, 45, E7, 00, 8B, 5D, 0C, 8B, C3, 8B, 7D, 10, 0F, AF, C7, 8B, 75, 08, 03, F0, 89, 75, 08, 83, 65, FC, 00, 8B, C7, 4F, 89, 7D, 10, 85, C0, 74, 14, 2B, F3, 89, 75, 08, 8B, 4D, 14, E8, 86, 07, 00, 00, 8B, CE, FF, 55, 14, EB, E2, B0, 01, 88, 45, E7, C7, 45, FC, FE, FF, FF, FF, E8, 14...
 
[+]

Entropy:
6.6561

Code size:
270.5 KB (276,992 bytes)

Service
Display name:
Backblaze Service

Service name:
bzserv

Description:
Backblaze Service watches for any file changes so changes can be backed up. See http://www.backblaze.com for more information.

Type:
Win32OwnProcess


Scan bzserv.exe - Powered by Reason Core Security