siw-debug.exe

System Information for Windows

Topala Software Solutions

The application siw-debug.exe, “System Information” by Topala Software Solutions has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Topala Software Solutions  (signed and verified)

Product:
System Information for Windows

Description:
System Information

Version:
5,4,0,0

MD5:
878d4ab01b7c536bbfa27f58f2de83cc

SHA-1:
a0b91da8ee1e0afc0cb86f46d0ed1e56f960b0f1

SHA-256:
7e37f54dd167129564bc2eba1a1863a432666632706dd57f67729806491040e1

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
1/14/2025 10:42:04 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.11.26.4

File size:
5.8 MB (6,123,768 bytes)

Product version:
5,4,0,0

Copyright:
Copyright © 2005-2015 Gabriel Topala

Original file name:
SIW.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\siw\siw-debug.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
5/7/2015 7:00:00 PM

Valid to:
5/7/2018 6:59:59 PM

Subject:
CN=Topala Software Solutions, O=Topala Software Solutions, STREET=1 Carmel Street, L=Vaughan, S=Ontario, PostalCode=L6A 0W5, C=CA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
122AF1F36DAFC08D300BDA6AE569B263

File PE Metadata
Compilation timestamp:
10/30/2015 12:08:31 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
98304:InXI7dtDkejzblhJgPWKUPy83+Y2XRLB6likXpoYCnvPeqOGE735FU3R2yEB:KXGtDkejzblhJgPWKiyy12ht/kXpsPeF

Entry address:
0x3D4DED

Entry point:
B8, 44, 86, 6A, 01, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, C4, C0, 65, 34, 6C, 9A, E1, 33, 46, 69, D6, FF, 92, 96, 44, 12, D9, C3, 92, 4F, D5, 7B, 02, 1D, 8D, 88, A2, A6, 08, 72, 59, 7F, AE, BB, 51, 61, 4D, BE, 75, E1, 57, 4C, 84, F8, 25, F5, A1, 01, D6, 3A, 86, D6, 97, BE, 33, D8, B8, 36, E1, 8A, D6, DB, DB, 07, 5D, CD, 60, B9, 7E, D7, 00, C7, 30, CC, FB, 04, 49, 2A, 12, 74, FD, 58, FF, 2F, D5, C6, FB, FA, AF, C5, CF, 0E, D8...
 
[+]

Entropy:
7.8647

Packer / compiler:
PECompact v2

Code size:
5.1 MB (5,338,624 bytes)

Remove siw-debug.exe - Powered by Reason Core Security