winja.exe

PHROZEN SOFTWARE (PHROZEN SAS)

Publisher:
Phrozen SAS  (signed by PHROZEN SOFTWARE (PHROZEN SAS))

Description:
Winja - Catch the presence of Malware in your system.

Version:
3.0.0.0

MD5:
8943516f86d1d159c4dfe1a95fe194f0

SHA-1:
0627517f248076b9d387052a4a284919e2b847fd

SHA-256:
eb0b73c4979250bac090a1eb710894c8f4b49bc2387e494fee9073f94c730bf3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 5:21:03 AM UTC  (today)

File size:
16.4 MB (17,171,704 bytes)

Product version:
3.0.0.0

Copyright:
(c) 2016

Trademarks:
Phrozen Software™

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\phrozenwinja\winja.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/17/2015 6:00:00 PM

Valid to:
11/17/2017 5:59:59 PM

Subject:
CN=PHROZEN SOFTWARE (PHROZEN SAS), O=PHROZEN SOFTWARE (PHROZEN SAS), STREET=12B rue de la Muette, L=Maisons Laffitte, S=Yvelines, PostalCode=78600, C=FR

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00DC9768E6091113E137EAF897D0436221

File PE Metadata
Compilation timestamp:
12/29/2016 11:33:26 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x71BCB0

Entry point:
55, 48, 83, EC, 50, 48, 8B, EC, 48, C7, 45, 28, 00, 00, 00, 00, 48, C7, 45, 40, 00, 00, 00, 00, 48, C7, 45, 38, 00, 00, 00, 00, 48, C7, 45, 30, 00, 00, 00, 00, 48, C7, 45, 48, 00, 00, 00, 00, 90, 48, 8D, 0D, B0, D9, FD, FF, E8, 53, D9, 8F, FF, 90, 48, 8B, 05, 5B, 0F, 0A, 00, C6, 00, 01, 48, 8B, 05, 19, 0C, 0A, 00, 48, 8B, 08, 48, 8D, 15, 33, 03, 00, 00, 4D, 33, C0, E8, 6F, 56, DC, FF, 66, 89, 05, 40, 16, 13, 00, 48, 8D, 4D, 48, 48, 0F, B7, 15, 34, 16, 13, 00, E8, 27, 2C, D5, FF, 48, 8B, 4D, 48, E8, AE, CA...
 
[+]

Entropy:
6.5406

Code size:
7.1 MB (7,451,136 bytes)

Windows Firewall Allowed Program
Name:
winja - catch the presence of malware in your system. (winja.exe) (merged rule)


Scan winja.exe - Powered by Reason Core Security