WTAPI.exe

WinTOTAL API

a la mode, inc.

Publisher:
a la mode, inc.  (signed and verified)

Product:
WinTOTAL API

Version:
1.00.0501

MD5:
659f989af33146bba21b2d2d29d7479e

SHA-1:
e8d90da485a15461f38dd4083847a54cd17075ae

SHA-256:
73e3fe61b089d3bfb3ea236451c74c52ecf1fde423195c31e16d2f1b8ae25b46

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/17/2024 5:26:47 PM UTC  (today)

File size:
829.2 KB (849,144 bytes)

Product version:
1.00.0501

Original file name:
WTAPI.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Windows\System32\wtapi.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/24/2006 8:00:00 PM

Valid to:
6/1/2009 7:59:59 PM

Subject:
CN="a la mode, inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="a la mode, inc.", L=Oklahoma City, S=OK, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
03942AB80983E78BC8304B96B389BD05

File PE Metadata
Compilation timestamp:
11/28/2007 3:06:55 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:sR5avwmgFBdvCFGNLaZrDrg16HA03h0vXd:2aveFBdvCFGcg6g03h0l

Entry address:
0x5B1C

Entry point:
68, 04, 60, 40, 00, E8, F0, FF, FF, FF, 00, 00, 40, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, C7, 2B, C8, 4D, 0A, 38, 26, 49, B3, C9, 7D, 5D, AA, 8D, 7B, 23, 00, 00, 00, 00, 00, 00, 1E, 00, 01, 00, 41, 00, 00, 50, 93, 02, 57, 54, 41, 50, 49, 00, 54, 01, 00, 00, 00, 00, 3C, 9C, 56, 01, B0, 00, 00, 00, 88, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 1F, 00, 00, 00, 65, 6F, 69, E8, 90, F5, 27, 42, 93, 49, 09, CD, B0, EB, C1, 1E, 02, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.9096

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
796 KB (815,104 bytes)

Automation Object
CLSID:
{8162D1FB-B5EB-45A0-87D5-CD1EAE248544}

CLSID name:
WTAPI.DataImp


Scan WTAPI.exe - Powered by Reason Core Security