SendLater.exe

SendLater

4Team Corporation

It runs as a scheduled task under the Windows Task Scheduler.
Publisher:
4Team Corporation  (signed and verified)

Product:
SendLater

Description:
Add-on for Microsoft® Office Outlook® 2002, 2003, 2007, 2010.

Version:
2.20.0719

MD5:
bc89efe82efd5a087f6d2cbb59bbe839

SHA-1:
0fd4eda92a2b154613e13f9e7a04d92a1778015c

SHA-256:
fe102ca22ea02c58b06f3c86c6b856e7a6b5d2d2d8b37f47d4f92144fe603233

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/8/2024 4:48:53 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
probably WIN.WORM.Virus
9.0.1.05190

File size:
577.5 KB (591,336 bytes)

Product version:
2.20.0719

Copyright:
©1999-2009 4Team Corporation. All rights reserved.

Original file name:
SendLater.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\4team corporation\sendlater\sendlater.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
2/25/2009 5:30:00 AM

Valid to:
3/5/2010 5:29:59 AM

Subject:
CN=4Team Corporation, OU=SECURE APPLICATION DEVELOPMENT, O=4Team Corporation, L=Coral Springs, S=Florida, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
5F935CDA81D3BF5851B38E27145D06D1

File PE Metadata
Compilation timestamp:
11/20/2009 5:23:36 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:ruYTdJNjGi5qAGsD0AzirJegN/1gTE+B:r9xJBf5qAGsDVziFNNgY+B

Entry address:
0x5E78

Entry point:
68, 64, 61, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, F3, 80, C5, D5, 24, 2B, 73, 4E, 8F, 05, 90, 5A, 81, 0E, F6, E4, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 34, 54, 65, 61, 6D, 2E, 53, 65, 6E, 64, 6C, 61, 74, 65, 72, 00, 65, 78, 65, 22, 0D, 0A, 00, 00, 00, 00, 01, 00, 0B, 00, EC, 9B, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, 50, 9E, 40, 00, 2C, 40, 46, 00, 00, 00, 00, 00, 68, 47, 20, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.2606

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
396 KB (405,504 bytes)

Scheduled Task
Task name:
{98DB8E78-1E52-41BE-B483-70E41E51E913}

Trigger:
Registration (Runs on registration)


Scan SendLater.exe - Powered by Reason Core Security