melody.exe

Northwest Evaluation Association

Publisher:
Northwest Evaluation Association  (signed and verified)

MD5:
ff412dae3c8ee156290934ed9615dcfc

SHA-1:
a6a699ee6b697265ab313527933c7925c6ce8152

SHA-256:
8d5a653683779b598cff55353079e3d10593cb2fd58547bb68dbd8f17e9abb51

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 11:27:46 AM UTC  (today)

File size:
149.2 KB (152,824 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\children's progress\children's progress - cpaa\melody.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
12/2/2015 6:00:00 PM

Valid to:
3/5/2017 5:59:59 PM

Subject:
CN=Northwest Evaluation Association, OU=Product Engineering, O=Northwest Evaluation Association, L=Portland, S=Oregon, C=US

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
6E752D3064BCE09EEA11FD990ACB3820

File PE Metadata
Compilation timestamp:
4/5/2016 2:17:41 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:DbX1Z/y9wUxTOPwa45iH5oGZQrd5AWLDezmJ6oG/Ah://CBoyM5oEQrdiWvezmJ6o

Entry address:
0x2181

Entry point:
E8, CF, 20, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 33, C9, 3B, 04, CD, 28, E1, 40, 00, 74, 13, 41, 83, F9, 2D, 72, F1, 8D, 48, ED, 83, F9, 11, 77, 0E, 6A, 0D, 58, 5D, C3, 8B, 04, CD, 2C, E1, 40, 00, 5D, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, 5D, C3, E8, 04, 1D, 00, 00, 85, C0, 75, 06, B8, 90, E2, 40, 00, C3, 83, C0, 08, C3, E8, F1, 1C, 00, 00, 85, C0, 75, 06, B8, 94, E2, 40, 00, C3, 83, C0, 0C, C3, 8B, FF, 55, 8B, EC, 56, E8, E2, FF, FF, FF, 8B, 4D, 08...
 
[+]

Entropy:
5.4803

Code size:
34 KB (34,816 bytes)

Scan melody.exe - Powered by Reason Core Security