csis_tcpdump.exe

CSIS Security Group A/S

Publisher:
CSIS Security Group A/S  (signed and verified)

MD5:
1e6c3d1bbbba0a283afee3c3048313d5

SHA-1:
bc316a8019e559bba32b01f8bdd77037925d042d

SHA-256:
44a0c77b2b158f9e1fdaa5df1c0d130273301ed71073c899f65babecaaee3d6c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 3:47:22 PM UTC  (today)

File size:
173.2 KB (177,368 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\csis_tcpdump.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
5/6/2015 1:00:00 AM

Valid to:
5/6/2016 12:59:59 AM

Subject:
CN=CSIS Security Group A/S, O=CSIS Security Group A/S, STREET="Vestergade 2A, 3.", L=Copenhagen, S=Copenhagen, PostalCode=1456, C=DK

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
1AAFDD1B8A7790F43EDD261CD1970994

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.25

Entry address:
0x14E0

Entry point:
83, EC, 0C, C7, 05, 18, BB, 42, 00, 00, 00, 00, 00, E8, 2E, 3C, 01, 00, 83, C4, 0C, E9, 86, FC, FF, FF, 90, 90, 90, 90, 90, 90, A1, 44, 89, 41, 00, 85, C0, 74, 43, 55, 89, E5, 83, EC, 18, C7, 04, 24, 00, 90, 41, 00, FF, 15, 60, C2, 42, 00, 83, EC, 04, 85, C0, BA, 00, 00, 00, 00, 74, 16, C7, 44, 24, 04, 0E, 90, 41, 00, 89, 04, 24, FF, 15, 64, C2, 42, 00, 83, EC, 08, 89, C2, 85, D2, 74, 09, C7, 04, 24, 44, 89, 41, 00, FF, D2, C9, F3, C3, 66, 90, 55, 89, E5, 5D, C3, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90...
 
[+]

Entropy:
6.3820

Code size:
89 KB (91,136 bytes)

Scan csis_tcpdump.exe - Powered by Reason Core Security