getfoldersize_update_3.1.16.tmp

Michael Thummerer

Publisher:
Michael Thummerer  (signed and verified)

Description:
Setup/Uninstall

Version:
51.52.0.0

MD5:
1443c4d47eccb75af3ac939eb68d6777

SHA-1:
c7735ebb10c94fb7040f5358880f8d46d5511eab

SHA-256:
44860d4d5d923ad2001561dd601e354c54dcab6e9ffcb4d840a73470c6c027f1

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/15/2024 5:00:14 AM UTC  (today)

Scan engine
Detection
Engine version

Zillya! Antivirus
Trojan.Diple.Win32.89896
2.0.0.3184

File size:
780.8 KB (799,576 bytes)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\getfoldersize_update_3.1.16.tmp

Digital Signature
Authority:
COMODO CA Limited

Valid from:
10/28/2015 1:00:00 AM

Valid to:
10/28/2020 12:59:59 AM

Subject:
CN=Michael Thummerer, O=Michael Thummerer, STREET=444 Moo 9, STREET=3rd Road, STREET=Soi 14, L=Pattaya, S="Nongprue Banglamung, Chonburi", PostalCode=20150, C=TH

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
3811861A332B79F0A2DC02882B03796E

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x9A490

Entry point:
55, 8B, EC, 83, C4, F4, 53, 56, 57, E8, A6, 8E, F6, FF, E8, FD, B1, F6, FF, E8, 4C, BF, F6, FF, E8, 67, C3, F6, FF, E8, EA, F8, F6, FF, E8, FD, 66, F7, FF, E8, 60, 69, F7, FF, E8, B7, 88, F7, FF, E8, CA, EF, F7, FF, E8, C5, AE, F8, FF, E8, D8, 56, F9, FF, E8, BF, 69, F9, FF, E8, 42, 58, FB, FF, E8, 09, 5D, FB, FF, E8, 74, 66, FB, FF, E8, 53, 7A, FB, FF, E8, 46, 94, FB, FF, E8, 5D, D3, FB, FF, E8, BC, E2, FB, FF, E8, CF, F5, FB, FF, E8, 12, AD, FC, FF, E8, A9, 35, FD, FF, E8, 5C, F9, FD, FF, E8, 63, AE, FE...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
614 KB (628,736 bytes)

Scan getfoldersize_update_3.1.16.tmp - Powered by Reason Core Security