Wunderlist.exe

Wunderlist

6 Wunderkinder GmbH

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Wunderlist’.
Publisher:
6 Wunderkinder GmbH  (signed and verified)

Product:
Wunderlist

Version:
2.3.0.25

MD5:
e649d10b7419f49c376f318586e0d35c

SHA-1:
c9ea9c1173bfa4f853cfc28fe139ad5f987d78fa

SHA-256:
aa9df6e115b08a2b0899aaa23a529a8a427b732127a19bdecb7eebbef1a824f5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 1:44:08 PM UTC  (today)

File size:
12.4 MB (13,011,552 bytes)

Product version:
a473cfc8a59b43e82c646905043958f36533bedc

Copyright:
Copyright (c) 2013

Original file name:
Wunderlist.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\wunderlist2\wunderlist.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/17/2012 8:27:14 AM

Valid to:
12/18/2014 8:27:14 AM

Subject:
E=support@6wunderkinder.com, CN=6 Wunderkinder GmbH, O=6 Wunderkinder GmbH, L=Berlin, S=Berlin, C=DE

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11215C4067E124A00A618BC246CD0180CD7E

File PE Metadata
Compilation timestamp:
9/24/2013 10:23:45 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
196608:pbzlv3eAruGvqtEsi+12Kgm/6BffHTHEE1v6b3MCMhpQL2xNcN6IHu:pFGlPes/12Lm/4THEE1vcToC2xCK

Entry address:
0xC6514E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9105

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
12.4 MB (12,988,928 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Wunderlist

Command:
"C:\Program Files\wunderlist2\wunderlist.exe" \silent


Scan Wunderlist.exe - Powered by Reason Core Security