zinstall.exe

ZidduApp

Meridian Tech Pte Limited

This is a self-extracting archive and installer.
Publisher:
Meridian Tech Pte Ltd.  (signed by Meridian Tech Pte Limited)

Product:
ZidduApp

Version:
2.0.0.0

MD5:
5defa6073ca633f3e610fd8ae23c8427

SHA-1:
39a5238cd1960b182d67cf99676b068c426dc2f8

SHA-256:
08911563a3448ea691b1bc0995f8490d48b56bd4c9e3aed3452cb7126c8bed1d

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/5/2024 9:54:04 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/BitCoinMiner.BY (variant)
9.10935

McAfee
Artemis!5DEFA6073CA6
5600.6878

NANO AntiVirus
Trojan.Win32.Agent.dkafea
0.30.0.64448

Trend Micro House Call
Suspicious_GEN.F47V1225
7.2.22

File size:
18.5 MB (19,424,112 bytes)

Product version:
2.0.0.0

Copyright:
Copyright@Meridian Tech Pte Ltd.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\idm\zinstall.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/1/2014 7:00:00 AM

Valid to:
3/1/2015 6:59:59 AM

Subject:
CN=Meridian Tech Pte Limited, O=Meridian Tech Pte Limited, L=SINGAPORE, S=SINGAPORE, C=SG

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1CBC614C9382C5B0AF58402A1A1888B9

File PE Metadata
Compilation timestamp:
6/20/1992 5:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
393216:FWEBxIRXpiib+kvf0M+Yr5ahFqSMS8VbbRaWeEr547cJbwJ7:FWEXIXpiibnfnD/VVU4Rw7

Entry address:
0x2F5F4

Entry point:
55, 8B, EC, 83, C4, F0, B8, 64, F4, 42, 00, E8, 28, 6C, FD, FF, E8, C7, FA, FF, FF, E8, 7A, 4E, FD, FF, 8B, C0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9988

Developed / compiled with:
Microsoft Visual C++

Code size:
186 KB (190,464 bytes)

Scan zinstall.exe - Powered by Reason Core Security