qwesanja.exe

Anywinsoft

Publisher:
Anywinsoft  (signed and verified)

MD5:
5d67d100aafe5c6fee937d86a185fea5

SHA-1:
99bf4ded2fd4a0e103f0629879b71bfdae91f6fb

SHA-256:
c2f10d45d369f5b8436e663d0e1fdcfbfbe4a231e4ea8518bb419f96d3e0e374

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/14/2025 11:38:05 PM UTC  (a few moments ago)

File size:
1.9 MB (2,041,064 bytes)

File type:
Executable application (Win32 EXE)

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
2/11/2016 9:00:00 AM

Valid to:
10/24/2016 8:59:59 AM

Subject:
CN=Anywinsoft, O=Anywinsoft, L=Yangcheon-gu, S=SEOUL, C=KR

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
57E32D8A8EC308AF5F0DD70BD7B49697

File PE Metadata
Compilation timestamp:
6/20/1992 7:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:0AOcuxuIDWtIIbdQ7a4da+Vqsexp1BeJ1wK+tA:GcuxuIiCI5Q7Rda+UxpMOtA

Entry address:
0x1000

Entry point:
B8, B0, B1, D1, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 13, 5F, AC, 93, F6, DA, 0E, 4A, 3E, 62, 1D, 64, 84, 49, A8, 0C, 99, B2, F5, 69, 35, D4, 52, AF, E7, 82, B9, EB, DF, 2D, 1B, DD, 5F, 55, ED, BE, 51, CB, BA, 79, 06, CE, B9, 06, C3, 57, 03, D8, 92, 66, 83, 3E, 63, CF, BF, AD, A3, E9, EF, F3, 52, AE, 0A, A5, DF, 59, 93, 9E, CE, E4, D8, D0, 15, 4F, 3E, 32, F6, F9, 2A, 83, D0, 95, A4, 50, B5, 67, D6, D1, 06, C7, B5, 4D, C7...
 
[+]

Entropy:
7.9839

Packer / compiler:
PECompact v2

Code size:
5.6 MB (5,858,816 bytes)

Scan qwesanja.exe - Powered by Reason Core Security