winlock.exe.tmp

Denis Zolotov

Publisher:
Denis Zolotov  (signed and verified)

Description:
Setup/Uninstall

Version:
51.52.0.0

MD5:
155e6e017e765a826485eb66f385d646

SHA-1:
1f07d938ba96965e22850b48f928421801e7f851

SHA-256:
d8ade05dc2551e9fce73de79c44058db0b74f5aa1cd36fc4fc324748891d7166

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/6/2024 4:56:24 AM UTC  (today)

File size:
711.8 KB (728,864 bytes)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\winlock.exe.tmp

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
3/21/2014 8:00:00 AM

Valid to:
5/24/2017 8:00:00 PM

Subject:
CN=Denis Zolotov, O=Denis Zolotov, L=Moscow, C=RU

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0D6FC35019AE937213BFF4BA9367C2D4

File PE Metadata
Compilation timestamp:
6/20/1992 6:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x9A490

Entry point:
55, 8B, EC, 83, C4, F4, 53, 56, 57, E8, A6, 8E, F6, FF, E8, FD, B1, F6, FF, E8, 4C, BF, F6, FF, E8, 67, C3, F6, FF, E8, EA, F8, F6, FF, E8, FD, 66, F7, FF, E8, 60, 69, F7, FF, E8, B7, 88, F7, FF, E8, CA, EF, F7, FF, E8, C5, AE, F8, FF, E8, D8, 56, F9, FF, E8, BF, 69, F9, FF, E8, 42, 58, FB, FF, E8, 09, 5D, FB, FF, E8, 74, 66, FB, FF, E8, 53, 7A, FB, FF, E8, 46, 94, FB, FF, E8, 5D, D3, FB, FF, E8, BC, E2, FB, FF, E8, CF, F5, FB, FF, E8, 12, AD, FC, FF, E8, A9, 35, FD, FF, E8, 5C, F9, FD, FF, E8, 63, AE, FE...
 
[+]

Entropy:
6.5489

Developed / compiled with:
Microsoft Visual C++

Code size:
614 KB (628,736 bytes)

Scan winlock.exe.tmp - Powered by Reason Core Security