wpsetup.exe

WinPatrol

Ruiware, LLC.

The program is a setup application that uses the Tarma Installer installer.
Publisher:
Ruiware  (signed by Ruiware, LLC.)

Product:
WinPatrol

Description:
Installer for WinPatrol

Version:
33.1.2015.0

MD5:
e8fb6a297aa7237c8b2e2977dfdfb589

SHA-1:
285ec61549fc9843e9a321433a1949e0863564ca

SHA-256:
e547b7b096adf7245443b3453fb6a0a8e49a272fb2f662bbc89f4eb6a8288128

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 3:30:25 PM UTC  (today)

File size:
1.3 MB (1,413,120 bytes)

Product version:
33.1.2015.0

Copyright:
Copyright © 2014-2015 Ruiware, LLC

Original file name:
TSULoader.exe

File type:
Executable application (Win32 EXE)

Installer:
Tarma Installer

Common path:
C:\users\{user}\downloads\wpsetup.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/31/2014 2:00:00 AM

Valid to:
8/1/2015 1:59:59 AM

Subject:
CN="Ruiware, LLC.", O="Ruiware, LLC.", STREET=613 Century Dr, L=Largo, S=FL, PostalCode=33771-2120, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CAF877D76151E56610EE8B1A770C2B87

File PE Metadata
Compilation timestamp:
3/19/2015 1:27:16 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:8hfOFwze1ceCZsjqf+34zeb1RK1GUOpQUjV4q+VUy7daqdvIYUIX+ZxnUrZNfc:8QFwzehCZsjYI46XK1JUacYIEZn+ZJUk

Entry address:
0x124000

Entry point:
E8, 2B, 33, 00, 00, E9, 8B, D4, ED, FF, CC, CC, CC, CC, CC, CC, 8B, 04, 24, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 55, 8B, EC, 83, EC, 08, 53, 56, 57, 68, 86, 57, 0D, 00, 68, 88, 4E, 0D, 00, E8, 1A, 00, 00, 00, 89, 45, F8, 68, FA, 8B, 34, 00, 68, 88, 4E, 0D, 00, E8, 08, 00, 00, 00, 89, 45, FC, E9, B5, 00, 00, 00, 55, 8B, EC, 53, 56, 57, 51, 64, FF, 35, 30, 00, 00, 00, 58, 8B, 40, 0C, 8B, 48, 0C, 8B, 11, 8B, 41, 30, 6A, 02, 8B, 7D, 08, 57, 50, E8, 5B, 00, 00, 00, 85, C0, 74, 04, 8B, CA, EB, E7...
 
[+]

Code size:
7.5 KB (7,680 bytes)

Scan wpsetup.exe - Powered by Reason Core Security