ZDATDump.exe

Z-DATdump

Andreas Baumann

It runs as a scheduled task under the Windows Task Scheduler.
Publisher:
IMU - Andreas Baumann  (signed by Andreas Baumann)

Product:
Z-DATdump

Description:
Daten Dump auf Bandlaufwerk

Version:
5.04.0008

MD5:
1157390adfd17847558f3db4344e4a6e

SHA-1:
4c8433209125748ba58d706ef728d2ded4a88df3

SHA-256:
299f77af9a5068d9dbc0d3bd3540eaea31a7fe89b0d7a357d4e2f96f0461b18a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 11:23:34 AM UTC  (today)

File size:
1.3 MB (1,370,296 bytes)

Product version:
5.04.0008

Copyright:
© A.Baumann 2008 - 2013

Original file name:
ZDATDump.exe

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\Program Files\z-datdump\zdatdump.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
1/10/2012 1:00:00 AM

Valid to:
2/19/2014 12:59:59 AM

Subject:
CN=Andreas Baumann, OU=SECURE APPLICATION DEVELOPMENT, O=Andreas Baumann, L=Berlin, S=Berlin, C=DE

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
753BC7598F9981E43A04D477D6382D3D

File PE Metadata
Compilation timestamp:
1/7/2013 5:11:15 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x1234C

Entry point:
B8, 20, C3, A7, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, D1, CB, FE, B4, 73, 21, FF, D5, 44, 8B, 79, 92, 27, 7C, 5C, 5B, 87, 30, F9, CC, DA, 56, E9, 1F, 8A, 9E, 46, 17, 8A, B2, AF, 89, B5, 29, 2B, AA, CB, 5A, FA, 13, D6, 9E, 4D, 72, B0, 36, 2D, 87, 38, 46, 26, FD, 66, 7B, D2, C9, 1F, 1F, E3, 72, 6D, 33, DE, 2B, 05, 93, A9, FF, 39, BA, 86, 68, 17, D7, D9, 16, BB, CD, C8, 99, D4, F4, 39, 58, 0B, 38, 9F, 5F, C7, 08, E2, A9, B3...
 
[+]

Packer / compiler:
PECompact v2

Code size:
5.4 MB (5,648,384 bytes)

Scheduled Task
Task name:
{96A6A449-438B-4130-8BDD-D6CD20B424FD}

Trigger:
Registration (Runs on registration)


Scan ZDATDump.exe - Powered by Reason Core Security