SIW.EXE

System Information for Windows

Topala Software Solutions

The application SIW.EXE, “System Information” by Topala Software Solutions has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Topala Software Solutions  (signed and verified)

Product:
System Information for Windows

Description:
System Information

Version:
4,4,0,6

MD5:
eb94880be4c9a835d00fe3589bbe1781

SHA-1:
2c23b214e22cded6783eee824a6f04b2df8b22a9

SHA-256:
547d1845df95b2ec0c61e5f5d49d776d2811a481c995bf9f1b41a9841c8761d5

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/5/2024 7:07:54 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.12.7.23

File size:
3.1 MB (3,243,488 bytes)

Product version:
4,4,0,6

Copyright:
Copyright © 2005-2013 Gabriel Topala

Original file name:
SIW.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\siw demo\siw.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
5/4/2012 7:00:00 AM

Valid to:
5/5/2015 6:59:59 AM

Subject:
CN=Topala Software Solutions, O=Topala Software Solutions, STREET="22 Elkhorn Dr., #251", PostalCode=M2K 1J4, C=CA

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F1E362709E9545879CCFC63C3E7D085D

File PE Metadata
Compilation timestamp:
6/16/2013 8:38:12 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0xD2D31

Entry point:
B8, C0, A8, 0F, 01, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 48, 6E, E6, 73, F2, 8D, 53, F3, 05, B0, 4A, 53, 5A, 70, 49, 71, 08, 95, DC, 4D, 21, 58, 02, 4E, AB, AA, A0, F6, BF, C0, E7, BC, 81, 9A, D4, 31, C9, 98, 34, 98, 34, 91, 7F, EE, 57, 89, BA, E2, B0, 86, BA, 96, FB, 71, B6, 37, 5E, 49, 45, 29, 78, CF, C2, 09, 69, 15, 26, DC, 9E, EE, 3C, 43, 99, 9F, 14, 44, 8B, 8F, FA, E5, FD, 01, 95, 04, C7, 31, 15, 4D, 60, C3, B5, 23, E7...
 
[+]

Entropy:
7.7265

Packer / compiler:
PECompact v2

Code size:
3.4 MB (3,571,712 bytes)

Remove SIW.EXE - Powered by Reason Core Security