Adware_Removal_Tool_by_TSA.exe

Adware_Removal_Tool_by_TSA

Pawan Kumar

Publisher:
Pawan Kumar  (signed and verified)

Product:
Adware_Removal_Tool_by_TSA

Version:
4.1.0.0

MD5:
a7cbe36cacc375919fec3857ab46ccf8

SHA-1:
6537ea300bf21481bfd9b1afa7a61077a726bbf2

SHA-256:
6937249c292e827060a0c6cc3c79e43582fa0c4c7748f90911ad3a15d668a733

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/30/2024 10:55:32 AM UTC  (today)

File size:
684.2 KB (700,584 bytes)

Product version:
4.1.0.0

Copyright:
Copyright © 2015

Original file name:
Adware_Removal_Tool_by_TSA.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\adware_removal_tool_by_tsa.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
10/28/2014 8:00:00 PM

Valid to:
10/28/2016 7:59:59 PM

Subject:
CN=Pawan Kumar, OU=Software Development, O=Pawan Kumar, STREET=H NO 453/19 kailash Colony, STREET=Shanti vihar Near ITI Sonipat, L=Sonipat, S=Haryana, PostalCode=131001, C=IN

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
317DD1C55F51AC2756D9C93C060C6FA5

File PE Metadata
Compilation timestamp:
7/31/2015 10:40:07 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:+LVzAs0rLVz0gQAHoLV4IDABaF56+Aq4WBTWpSqXhpeEioU2UoVcu3kKgsLFxLVI:rCUUo+ONXiEiJ2Jd2

Entry address:
0xA210E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.1649

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
640.5 KB (655,872 bytes)

The file Adware_Removal_Tool_by_TSA.exe has been seen being distributed by the following URL.

Scan Adware_Removal_Tool_by_TSA.exe - Powered by Reason Core Security