Wunderlist.exe

Wunderlist

6 Wunderkinder GmbH

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Wunderlist’.
Publisher:
6 Wunderkinder GmbH  (signed and verified)

Product:
Wunderlist

Version:
2.1.1.19

MD5:
a55c8bb287a9853b2b21c216da454164

SHA-1:
823708dda6f65c22b42857be51b6712550601171

SHA-256:
ed2cd0b7e42b88ce20f9a1fc93edfa1b7aa294ec38459ee3f1536114a37e9f67

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 12:51:23 PM UTC  (today)

File size:
12.5 MB (13,149,280 bytes)

Product version:
704c07fd9fe15de14e573c6b54b313939bd9627e

Copyright:
Copyright (c) 2013

Original file name:
Wunderlist.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\wunderlist2\wunderlist.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/17/2012 8:27:14 AM

Valid to:
12/18/2014 8:27:14 AM

Subject:
E=support@6wunderkinder.com, CN=6 Wunderkinder GmbH, O=6 Wunderkinder GmbH, L=Berlin, S=Berlin, C=DE

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11215C4067E124A00A618BC246CD0180CD7E

File PE Metadata
Compilation timestamp:
7/3/2013 11:26:58 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
196608:Bbzlv3eAruGvqtEsi+12Kgm/6BffHTHEE1v6b3MCipQXSyNkwwzMR:BFGlPes/12Lm/4THEE1vcTQwSy6Xe

Entry address:
0xC86B6E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9163

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
12.5 MB (13,126,656 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Wunderlist

Command:
"C:\Program Files\wunderlist2\wunderlist.exe" \silent


Scan Wunderlist.exe - Powered by Reason Core Security