SingleStep.SyncTray.exe

World Vision International

Publisher:
World Vision International  (signed and verified)

Version:
0.0.0.0

MD5:
88eb93806c503a660da84d7ad35bbdc8

SHA-1:
a44d5b2463a381d4214e68b91960232b79826f07

SHA-256:
2cb91c63a8ae19278663ae0916269a41839309722d2cd0024ba2370fc61aded2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 5:55:10 AM UTC  (today)

File size:
85.1 KB (87,120 bytes)

Product version:
0.0.0.0

Original file name:
SingleStep.SyncTray.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\apps\2.0\q0nyz9ee.ph5\pl93pz3a.kcr\sing..tion_287fd0b1346aa44e_0002.0006_82e313eabc497301\singlestep.synctray.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
9/3/2015 5:00:00 PM

Valid to:
9/3/2018 4:59:59 PM

Subject:
CN=World Vision International, OU=GICT, O=World Vision International, L=Monrovia, S=California, C=US

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
64FF63F942157544C6177EDCB9CC004A

File PE Metadata
Compilation timestamp:
3/28/2016 5:15:30 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:foSf1/x6dLkquZtWqqf+FCN9suZwKRMfn/Z1LOdcSaX5xND+2:foUqKZIqqmFCN93wnfn/ZZOKSE5xND+2

Entry address:
0x1527E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.3789

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
77 KB (78,848 bytes)

Scan SingleStep.SyncTray.exe - Powered by Reason Core Security