paysetup.exe

SW Payroll 3.3.7

SchoolWrite

This is a setup and installation application. The file has been seen being downloaded from www.fileguru.com.
Publisher:
SchoolWrite

Product:
SW Payroll 3.3.7

Version:
3.3.7

MD5:
ee449ea0895564fb29719715e069d54d

SHA-1:
77068db8a302b5bbe51c1eeca1e978751725f421

SHA-256:
21bb479fefa51bc48b71d466a20c4588c24ed6ddbbca8960426d74c450b6e011

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 3:51:03 AM UTC  (today)

File size:
3.6 MB (3,805,125 bytes)

Product version:
3.3.7

Original file name:
C:\sw3_cd\paysetup.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\paysetup.exe

File PE Metadata
Compilation timestamp:
9/2/2010 5:49:41 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:4s1gFe1KC7WKDTHFDtWFxlJdHqyVjSWnHSx56GP:WeUCZDTlDtQPHqyVZyxc2

Entry address:
0x1814

Entry point:
55, 8B, EC, 83, E4, F8, 83, EC, 2C, 53, 56, 57, FF, 15, 00, 20, 40, 00, E8, 6B, FF, FF, FF, 85, C0, 74, 07, 6A, 02, E8, 50, F9, FF, FF, 33, FF, 47, 39, 3D, 0C, 44, 54, 00, 8B, F7, 7E, 53, 8B, 1D, 4C, 20, 40, 00, A1, 10, 44, 54, 00, 8B, 04, B0, 8A, 08, 80, F9, 2F, 74, 05, 80, F9, 2D, 75, 30, 68, 6C, 21, 40, 00, 40, 50, FF, D3, 85, C0, 75, 08, 89, 3D, 08, 44, 54, 00, EB, 1B, A1, 10, 44, 54, 00, 8B, 04, B0, 68, 74, 21, 40, 00, 40, 50, FF, D3, 85, C0, 75, 06, 21, 05, 08, 44, 54, 00, 46, 3B, 35, 0C, 44, 54, 00...
 
[+]

Entropy:
7.9981

Developed / compiled with:
Microsoft Visual C++

Code size:
4 KB (4,096 bytes)

The file paysetup.exe has been seen being distributed by the following URL.

Scan paysetup.exe - Powered by Reason Core Security