regutilities_1.6_setup.exe

Tuneup System Software Pvt Ltd

This is a setup and installation application.
Publisher:
Tuneup System Software Pvt Ltd  (signed and verified)

MD5:
f3ca90bbe47dbeb333df14532d453200

SHA-1:
3ad9fc2c23a3f0d1a6c16be59858b740c767119c

SHA-256:
e911729dfff9991065f76d8df83ebaa2d4ecad57ed090d13456b154c14ab7c9f

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/23/2024 7:51:32 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
riskware program Program.Unwanted.1385
9.0.1.05190

File size:
1.4 MB (1,427,840 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\regutilities_1.6_setup.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
3/22/2016 8:00:00 PM

Valid to:
12/25/2017 6:59:59 PM

Subject:
CN=Tuneup System Software Pvt Ltd, O=Tuneup System Software Pvt Ltd, L=Kaliakkavilai, S=Tamil Nadu, C=IN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
2124EAA1852487098D9FC7AD838603E9

File PE Metadata
Compilation timestamp:
6/19/1992 6:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:IQcQiHaWT1EoBukfmSPqIfjpRs/7QKmys6rbfapn66gLGmzZZFFVB6Nj4Ewj1X73:IV9tE4u87JjsnHs6g66gLGe/FVO8LiVe

Entry address:
0xA5F8

Entry point:
7F, 07, E8, E2, FB, FF, FF, EB, 48, 89, CA, E8, F9, FB, FF, FF, EB, 3F, 89, D8, 83, C3, 10, E8, 15, 04, 00, 00, 4F, 7F, F3, EB, 30, 55, 89, D5, 89, D8, 03, 5C, 2E, 02, 8B, 4C, 2E, 06, 8B, 54, 2E, 0A, E8, 96, FF, FF, FF, 4F, 7F, EA, 5D, EB, 14, 55, 89, D5, 89, D8, 03, 5C, 2E, 02, 89, F2, E8, 58, FF, FF, FF, 4F, 7F, F0, 5D, 5F, 5E, 5B, C3, B9, 01, 00, 00, 00, E9, 6E, FF, FF, FF, C3, 90, 53, 56, 57, 55, 81, C4, 00, F8, FF, FF, 8B, F1, 8B, DA, 8B, F8, 85, DB, 75, 09, 8B, C6, E8, 6D, FB, FF, FF, EB, 61, 81, FB...
 
[+]

Entropy:
7.9776  (probably packed)

Code size:
39.5 KB (40,448 bytes)

Scan regutilities_1.6_setup.exe - Powered by Reason Core Security