winguard.exe

WinGuard Pro 2016

Christopher Homer

Publisher:
WinGuardPro.com  (signed by Christopher Homer)

Product:
WinGuard Pro 2016

Version:
10.1.1.1

MD5:
1532d6c113ce48db0430b18cc9b766b0

SHA-1:
978c13d201fd0c7e34fb6dd144e961df1d8d2ade

SHA-256:
f14bda0efa1b775d943ed6b06a9060628d3b08ab62006811cbeafefd083cf29d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 4:52:07 AM UTC  (today)

File size:
83.6 KB (85,584 bytes)

Product version:
10.1.1.1

Copyright:
Copyright © 2016

Trademarks:
WinGuardProTM

Original file name:
winguard.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\winguard.exe

Digital Signature
Authority:
Unizeto Technologies S.A.

Valid from:
9/2/2015 3:05:25 PM

Valid to:
9/1/2016 3:05:25 PM

Subject:
E=tech@winguardpro.com, CN=Christopher Homer, O=Christopher Homer, C=GB

Issuer:
CN=Certum Code Signing CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
428B474674E66DCB847575213F1FF26D

File PE Metadata
Compilation timestamp:
4/15/2016 2:51:31 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
80.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:OHU6USOiqjVJQY0i8cCVnE8I+KkmIehGrBZEs31nZlOKcl2Ta:OzsEE8I+vmIehQBWsfl9Y2e

Entry address:
0x12FDA

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 80, 00, 00, 80, 10, 00, 00, 00, B0, 00, 00, 80, 18, 00, 00, 00, E0, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 02, 00, 01, 00, 00, 00, 50, 00, 00, 80, 02, 00, 00, 00, 68, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.8599

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
68 KB (69,632 bytes)

The file winguard.exe has been seen being distributed by the following URL.

Scan winguard.exe - Powered by Reason Core Security