medpron_10.exe

Link Data Security A/S

Publisher:
Link Data Security A/S  (signed and verified)

MD5:
2ec88e3e4be0bc0137933756f5ab3ca2

SHA-1:
7565f220ffc4fa3521ebfe8e8a0736734ed5409a

SHA-256:
b8c5ba19140bae58443486f398701812f9620e7ff73c5fce2c4c46692fac577d

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/24/2024 10:10:42 PM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:HackTool.Obfuscator!1.9D0B
23.00.65.14617

File size:
241.8 KB (247,640 bytes)

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
4/13/2007 4:21:03 AM

Valid to:
4/12/2008 4:21:03 AM

Subject:
CN=Link Data Security A/S, OU=Secure Application Development, O=Link Data Security A/S, L=Copenhagen, S=Copenhagen, C=DK

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
52788BE390DAA81DB65E81593E8F3E21

File PE Metadata
Compilation timestamp:
2/1/2008 6:29:55 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
6144:eXq5IH4w2Ey61TAcXtR2fdGpnwZa+rwFG4P:eXquHP5ZTAcGfdGRwZ1rCP

Entry address:
0x29877

Entry point:
68, F1, 36, AD, B6, 87, 1C, 24, 60, E8, 00, 00, 00, 00, 5F, 8D, B7, EA, F7, FF, FF, 81, C7, 32, 00, 00, 00, 8B, 0E, 8A, D1, 83, C6, 04, C1, E9, 08, 74, 0B, 8A, 07, 32, C3, 2A, F8, AA, D3, D3, E2, F5, 80, FA, 00, 74, 07, 01, 1F, 83, C7, 04, EB, DD, 61, 5B, 99, 8D, 0F, 9C, F0, 70, FB, F7, 95, 91, 5F, 9E, 7C, 9E, 00, F4, CE, F0, 29, 80, D4, 82, 3A, 07, 76, E0, 11, 30, 79, FD, 8C, 68, 78, E1, 1A, AA, 67, 53, DB, F2, 29, 8B, 46, BF, EE, 3F, 56, AA, 3C, 7B, 56, 25, 93, 2B, B7, 1A, 71, 60, D8, 7B, 15, 23, 5E, 3C...
 
[+]

Code size:
163 KB (166,912 bytes)

Scan medpron_10.exe - Powered by Reason Core Security