wcrash.exe

kurzköpfigen

Sophos Plc

Publisher:
Sophos Plc  (signed and verified)

Product:
kurzköpfigen

Description:
Palmbäumen

Version:
6.06.0008

MD5:
eeaef9350a5f50e7c69abd8f864d2e8a

SHA-1:
fd1df6fb956a3243e36f60c2d406d35dc6d676f3

SHA-256:
a6cb35ad28aa6f6eb0f2d73805c68c11ffd4b1dab607082d58396d523653f7a7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 3:23:20 PM UTC  (today)

File size:
187.1 KB (191,544 bytes)

Product version:
6.06.0008

Copyright:
Bäuerlicher3

Trademarks:
Ledersitzen

Original file name:
fußläufiges.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\wcrash.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
3/24/2006 9:00:00 PM

Valid to:
3/31/2009 8:59:59 PM

Subject:
CN=Sophos Plc, OU=Q4, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Sophos Plc, L=Abingdon, S=Oxfordshire, C=GB

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6F20F96294006E1A8322B8D299D7D964

File PE Metadata
Compilation timestamp:
11/3/2014 10:07:27 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:gHO/JXz4M2zQuRVO0rXZRe9AawWU4x4NbNgXejNlil5Wy:DMM2zQuJZReyYXeHyv

Entry address:
0x10B8

Entry point:
68, 38, C1, 41, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, 13, 7C, 2A, 6F, 28, 0C, 72, 4E, A7, 5F, 28, C6, 02, 49, 5D, 1A, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 90, 22, D3, 02, 4C, 65, 69, 73, 74, 75, 6E, 67, 73, 61, 6E, 67, 65, 62, 6F, 74, 00, 07, 41, 00, 34, 46, D3, 02, 00, 00, 00, 00, FF, CC, 31, 00, 0F, 18, 44, 6E, 3C, B0, 8F, 9F, 43, 85, C7, 54, 04, 59, C4, 39, CA, DD, CB, DA, CB, A2, 5E, 9E, 4D, 9E, 6B, 3F, 4D, 9D, FB, 79, 94, 3A, 4F, AD...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
168 KB (172,032 bytes)

Scan wcrash.exe - Powered by Reason Core Security