ConEmuSetup.exe

ConEmu

Open Source Developer, ConEmu-Maximus5

Publisher:
ConEmu-Maximus5  (signed by Open Source Developer, ConEmu-Maximus5)

Product:
ConEmu

Description:
ConEmu Installer

Version:
160724

MD5:
2e94152fb13361b3a3954107af429999

SHA-1:
1821434820b0d8cb69a9af4e43b44a20a4cd2188

SHA-256:
ad1b6bf5783ba0bb9fa444319dfe1a4d74e659d3ea8f11585b484716a87715a4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 5:01:58 PM UTC  (today)

File size:
37.5 KB (38,432 bytes)

Product version:
160724

Copyright:
© ConEmu.Maximus5@gmail.com

Original file name:
ConEmuSetup.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\conemusetup.exe

Digital Signature
Authority:
Unizeto Technologies S.A.

Valid from:
5/2/2016 4:31:18 AM

Valid to:
8/5/2016 5:00:00 PM

Subject:
E=ConEmu.Maximus5@gmail.com, CN="Open Source Developer, ConEmu-Maximus5", O=Open Source Developer, C=RU

Issuer:
CN=Certum Code Signing CA SHA2, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
3E7F6708F415D35803FA526792E35BB4

File PE Metadata
Compilation timestamp:
7/25/2016 1:49:21 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.56

CTPH (ssdeep):
768:3J8mFntiFIY2SbUyvEcQmFj659JiZZxGfeFEbp:Z8mYI+GfgEN

Entry address:
0x1110

Entry point:
55, 89, E5, 83, EC, 08, C7, 04, 24, 02, 00, 00, 00, FF, 15, 64, 51, 40, 00, E8, F8, FE, FF, FF, 90, 8D, B4, 26, 00, 00, 00, 00, 55, 89, E5, 83, EC, 08, C7, 04, 24, 01, 00, 00, 00, FF, 15, 64, 51, 40, 00, E8, D8, FE, FF, FF, 90, 8D, B4, 26, 00, 00, 00, 00, 55, 89, E5, 53, 83, EC, 14, 8B, 45, 08, 8B, 00, 8B, 00, 3D, 91, 00, 00, C0, 77, 3B, 3D, 8D, 00, 00, C0, 72, 4B, BB, 01, 00, 00, 00, C7, 44, 24, 04, 00, 00, 00, 00, C7, 04, 24, 08, 00, 00, 00, E8, 53, 0B, 00, 00, 83, F8, 01, 0F, 84, 03, 01, 00, 00, 85, C0...
 
[+]

Entropy:
5.7112

Packer / compiler:
MingWin32 GCC, 0x3.x

Code size:
3.5 KB (3,584 bytes)

Scan ConEmuSetup.exe - Powered by Reason Core Security