TRJSCAN.EXE

Trojan Scanner

Simply Super Software

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘TrojanScanner’.
Publisher:
Simply Super Software  (signed and verified)

Product:
Trojan Scanner

Version:
6.9.5.1349

MD5:
c1128a038f44c0b821558db8672786ca

SHA-1:
c0d98d0762fb8d10b15a21cd23fc2a8763517e41

SHA-256:
e02c1b9bf96d1152a917aa71ec331681d888a21e3455763858fc2e11dbcf9ecd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 3:40:37 PM UTC  (today)

File size:
3.5 MB (3,656,248 bytes)

Product version:
6.9

Copyright:
© 1999-2017 Simply Super Software

Original file name:
TRJSCAN.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\trojan remover\trjscan.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
9/19/2014 5:00:00 PM

Valid to:
9/19/2017 4:59:59 PM

Subject:
CN=Simply Super Software, O=Simply Super Software, STREET=19 Coxs Close, L=Nuneaton, S=Warwickshire, PostalCode=CV10 7ET, C=GB

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CBAD5686CE0AD9D18A9CEC26F3AE8696

File PE Metadata
Compilation timestamp:
2/27/2017 12:06:59 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x2A3A60

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, B8, F0, F5, 69, 00, E8, 0A, 48, D6, FF, 8B, 35, DC, 98, 6A, 00, B8, 38, 3B, 6A, 00, E8, 16, BB, FF, FF, 84, C0, 74, 1A, 6A, 00, 6A, 00, B9, 01, 80, 00, 00, 33, D2, B8, 68, 3B, 6A, 00, E8, 91, BA, FF, FF, E9, 87, 00, 00, 00, 6A, 01, E8, 51, 4E, D6, FF, 83, C8, 01, 50, E8, 48, 4E, D6, FF, 8B, 06, E8, D1, AE, DD, FF, E8, 44, 4D, D6, FF, 50, E8, 56, 4E, D6, FF, E8, 1D, E4, D6, FF, 8B, 06, B2, 01, E8, C0, CD, DD, FF, 8B, 06, C6, 80, D4, 00, 00, 00, 01, 8B, 06, BA, 8C, 3B, 6A, 00...
 
[+]

Entropy:
6.6288

Developed / compiled with:
Microsoft Visual C++

Code size:
2.6 MB (2,763,776 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
TrojanScanner

Command:
C:\Program Files\trojan remover\trjscan.exe \boot


Scan TRJSCAN.EXE - Powered by Reason Core Security