prowin.exe

Thomson Reuters

Publisher:
Thomson Reuters  (signed and verified)

Description:
Loader

Version:
5.83

MD5:
9105afb17b2a68877081ad496ff05bdc

SHA-1:
714f5b12e42658cf6a10e835e7b8a45145ba387a

SHA-256:
167606052a537cc61e79590904c865e012eae0e1e5980215f051205b4a552d69

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/1/2024 1:30:46 AM UTC  (today)

File size:
1.6 MB (1,664,968 bytes)

Product version:
5.83

Copyright:
Thomson Reuters

Original file name:
prowin.exe.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
8/2/2015 7:00:00 PM

Valid to:
8/3/2017 6:59:59 PM

Subject:
CN=Thomson Reuters, OU=Legal, O=Thomson Reuters, L=Eagan, S=Minnesota, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
2EF5B4D2D26A8A9281CA351660A566C8

File PE Metadata
Compilation timestamp:
11/14/2016 3:58:54 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.50

CTPH (ssdeep):
24576:ZfijNyxFamMgcEtLmsc3GY0ESUYYHUTjtYF:lijWYgcEtLmQY0MYnTxC

Entry address:
0x39C04

Entry point:
DB, E3, 31, C0, BB, BC, 31, 4A, 00, 89, C1, E8, 54, 7D, FC, FF, 09, C0, 74, 14, B8, 44, 47, 46, 00, E8, 4E, 7D, FC, FF, E8, C1, 7C, FC, FF, B8, 00, 00, 00, 00, E8, CF, 7C, FC, FF, 90, 90, 90, 60, 89, C6, 83, 7E, 61, 00, 74, 17, 8B, 4E, 61, B8, 01, 02, 00, 00, BB, 00, 00, 00, 00, BA, 01, 00, 00, 00, E8, 7C, 79, FC, FF, 8B, 46, 08, E8, 50, FB, FE, FF, C7, 46, 61, 00, 00, 00, 00, 8B, 46, 08, E8, 39, FB, FE, FF, 61, C3, 90, 90, 90, 83, EC, 38, 56, 57, B8, 10, 59, 4E, 00, E8, 3D, 80, 00, 00, 89, C3, B8, C4, 58...
 
[+]

Entropy:
6.0613

Code size:
543 KB (556,032 bytes)

Scan prowin.exe - Powered by Reason Core Security