usr.exe

USRCmdLine

Crystal Rich Ltd

Publisher:
Crystal Rich Ltd  (signed and verified)

Product:
USRCmdLine

Description:
Zentimo\USB Safely Remove command line tool

Version:
5.5.1.1250

MD5:
00bc7dbec25acfc27a10c586d78cba04

SHA-1:
3a362909043c7c603149ab96cd7ed2283c8df095

SHA-256:
79f2160aacd223a110cae082c8d7ed506e42da3def6d6cead4e0238cb8ed83fc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 7:50:45 PM UTC  (today)

File size:
1 MB (1,065,568 bytes)

Product version:
5.5.1.1250

Copyright:
Copyright © 2017 by Crystal Rich Ltd

File type:
Executable application (Win32 EXE)

Language:
English (United Kingdom)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\usr.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
2/16/2017 3:00:00 AM

Valid to:
2/21/2020 3:00:00 PM

Subject:
CN=Crystal Rich Ltd, O=Crystal Rich Ltd, L=Saint Petersburg, C=RU

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0188DF238CCAED19328F6D1A4B1BBA3D

File PE Metadata
Compilation timestamp:
2/16/2017 1:42:16 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.25

Entry address:
0xDFFDC

Entry point:
55, 8B, EC, 83, C4, F0, A1, CC, 6A, 4E, 00, C6, 00, 01, B8, 28, 85, 4D, 00, E8, B0, B2, F2, FF, A1, 24, 65, 4E, 00, BA, 28, 00, 4E, 00, E8, 01, 79, F2, FF, A1, 0C, 6B, 4E, 00, BA, 64, 00, 4E, 00, E8, F2, 78, F2, FF, E8, F5, 71, FF, FF, E8, 38, 72, F2, FF, B0, 04, 02, 00, FF, FF, FF, FF, 17, 00, 00, 00, 68, 00, 74, 00, 74, 00, 70, 00, 3A, 00, 2F, 00, 2F, 00, 73, 00, 61, 00, 66, 00, 65, 00, 6C, 00, 79, 00, 72, 00, 65, 00, 6D, 00, 6F, 00, 76, 00, 65, 00, 2E, 00, 63, 00, 6F, 00, 6D, 00, 00, 00, B0, 04, 02, 00...
 
[+]

Entropy:
6.3825

Developed / compiled with:
Microsoft Visual C++

Code size:
889 KB (910,336 bytes)

Scan usr.exe - Powered by Reason Core Security