WebMultiSelectSetup.exe

PPCWebMultiSelectSetup

Thomson Reuters

Publisher:
Practitioners Publishing Company  (signed by Thomson Reuters)

Product:
PPCWebMultiSelectSetup

Version:
2015.01.0004

MD5:
b4fb745ae4958d16d8c617e8dd4d8534

SHA-1:
864c14b27271ec5ebe653e7d0ce5b961cde0f558

SHA-256:
381021003d3d57e0fb11c3ecddb0da9170e321816b72d9bda7dd4c326c6d183b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 10:03:27 AM UTC  (today)

File size:
26 KB (26,616 bytes)

Product version:
2015.01.0004

Original file name:
WebMultiSelectSetup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\webmultiselectsetup.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
11/24/2015 6:00:00 PM

Valid to:
11/25/2017 5:59:59 PM

Subject:
CN=Thomson Reuters, OU=Tax and Accounting, O=Thomson Reuters, L=Carrollton, S=Texas, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
096CB9EB44274A5DDE1172C9E80CBC49

File PE Metadata
Compilation timestamp:
1/7/2016 9:21:59 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
192:YadO3j07meAuDEVTquThSZD3WyoNjSBnYe+PjP4jI0ywwPtGx:C3o7VAQEVTqu9GD3WyoBSBnYPL+5Gcx

Entry address:
0x1270

Entry point:
68, 50, 14, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, BA, CC, D8, 7D, DD, A9, CF, 4B, AE, 4A, 75, 51, 0B, C8, CB, 86, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 50, 43, 57, 65, 62, 4D, 75, 6C, 74, 69, 53, 65, 6C, 65, 63, 74, 53, 65, 74, 75, 70, 00, 6F, 00, 00, 00, 00, 01, 00, 03, 00, 48, 17, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, 2C, 18, 40, 00, 18, 30, 40, 00, 00, 00, 00, 00, 90, E7, 33, 04...
 
[+]

Entropy:
4.2989

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
8 KB (8,192 bytes)

Scan WebMultiSelectSetup.exe - Powered by Reason Core Security