Wireshark.exe

Wireshark

Wireshark Foundation

Publisher:
The Wireshark developer community, http://www.wireshark.org/  (signed by Wireshark Foundation)

Product:
Wireshark

Version:
1.10.5

MD5:
6aeca2a6740ff8be21a8015428f8f61f

SHA-1:
840604d1abad8e1153c499208fb88c73a6ffe181

SHA-256:
68a4e7f3e8008b6423855c376df59bb962fbaff752cbccef3e2a75798b160f77

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/30/2024 11:05:14 AM UTC  (today)

File size:
3.5 MB (3,620,272 bytes)

Product version:
1.10.5

Copyright:
Copyright © 2000 Gerald Combs <gerald@wireshark.org>, Gilbert Ramirez <gram@alumni.rice.edu> and others

Original file name:
Wireshark.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\wireshark\wireshark.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/14/2013 8:00:00 PM

Valid to:
7/14/2016 7:59:59 PM

Subject:
CN=Wireshark Foundation, O=Wireshark Foundation, STREET=199 Fremont, L=San Francisco, S=CA, PostalCode=94105, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
4CFF0C70E9CA31A85DFEB92699944390

File PE Metadata
Compilation timestamp:
12/19/2013 2:40:56 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:iHKwZMJc8CmzTp56RtitdCG12dm/8kw7mSOdDMDW:QwaG12dmtw7m6DW

Entry address:
0x1B2000

Entry point:
48, 83, EC, 28, E8, C3, 04, 00, 00, 48, 83, C4, 28, E9, D2, FC, FF, FF, FF, 25, F8, 34, 00, 00, FF, 25, EA, 34, 00, 00, FF, 25, DC, 34, 00, 00, FF, 25, BE, 34, 00, 00, FF, 25, B0, 34, 00, 00, FF, 25, A2, 34, 00, 00, FF, 25, 94, 34, 00, 00, FF, 25, 86, 34, 00, 00, FF, 25, 78, 34, 00, 00, FF, 25, 6A, 34, 00, 00, FF, 25, 5C, 34, 00, 00, FF, 25, 4E, 34, 00, 00, FF, 25, 40, 34, 00, 00, FF, 25, 32, 34, 00, 00, FF, 25, 24, 34, 00, 00, FF, 25, 1E, 32, 00, 00, FF, 25, 08, 34, 00, 00, FF, 25, FA, 33, 00, 00, FF, 25...
 
[+]

Entropy:
6.1430

Code size:
1.7 MB (1,783,296 bytes)