upwork.exe

oDesk Corporation SPC

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Upwork’.
Publisher:
oDesk Corporation SPC  (signed and verified)

MD5:
c03ddb446f45f38755836d5a6f9b7c96

SHA-1:
ac174911672413ea0a87e73d31a92fbc34124004

SHA-256:
61d81e43774e1ac0772722460e895d7cc93b5d57891f283cd2653ebe3218577c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/18/2024 11:27:26 AM UTC  (today)

File size:
1.4 MB (1,444,320 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\upwork\upwork.exe

Digital Signature
Authority:
oDesk Corporation CA

Valid from:
3/18/2015 9:59:42 AM

Valid to:
1/1/2040 7:59:59 AM

Subject:
CN=oDesk Corporation SPC

Issuer:
CN=oDesk Corporation CA

Serial number:
A068FD1366552AAE477D9E015BF13429

File PE Metadata
Compilation timestamp:
5/22/2015 2:50:18 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:hNabGCb5TnD4Oy9GlA5pK3QsAg+7v+OLyMKXTwl/0qXCTjRESM:0b5TD4gAg+wT4/05Tt5M

Entry address:
0xCC528

Entry point:
E8, F1, 4E, 01, 00, E9, 39, FE, FF, FF, 55, 8B, EC, 83, EC, 20, 53, 57, 33, DB, 6A, 07, 33, C0, 59, 8D, 7D, E4, 89, 5D, E0, F3, AB, 39, 45, 10, 75, 15, E8, 40, FD, FF, FF, C7, 00, 16, 00, 00, 00, E8, FB, AF, FF, FF, 83, C8, FF, EB, 75, 8B, 45, 0C, 56, 8B, 75, 08, 85, C0, 74, 19, 85, F6, 75, 15, E8, 1C, FD, FF, FF, C7, 00, 16, 00, 00, 00, E8, D7, AF, FF, FF, 83, C8, FF, EB, 50, B9, FF, FF, FF, 7F, 89, 4D, E4, 3B, C1, 77, 03, 89, 45, E4, 8D, 45, 14, 50, 53, FF, 75, 10, 8D, 45, E0, 50, C7, 45, EC, 42, 00, 00...
 
[+]

Entropy:
6.7878

Code size:
1020.5 KB (1,044,992 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Upwork

Command:
C:\Program Files\upwork\upwork.exe


Scan upwork.exe - Powered by Reason Core Security