Autorun.EXE

Autorun Application

Tera Analysis ApS

Publisher:
Tera Analysis Ltd.  (signed by Tera Analysis ApS)

Product:
Autorun Application

Description:
Starter program for QuickField compact disk

Version:
6.2.0.0

MD5:
39a4f0c8dbdbb0f82261bc40e7a7435f

SHA-1:
4faada68ac27037288e86dad67b78b69e0f143e3

SHA-256:
6a31839ca6b0822dae5f24ec9b2582b83aeb9b7f2cf9cefd6ff69e2ac28ccb76

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/1/2024 8:03:35 AM UTC  (today)

File size:
3.4 MB (3,546,576 bytes)

Product version:
6.2.0.0

Copyright:
Copyright (C) 2015

Trademarks:
Copyright Tera Analysis Ltd., 2015

Original file name:
Autorun.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\autorun.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
9/14/2015 2:00:00 AM

Valid to:
12/14/2017 12:59:59 AM

Subject:
CN=Tera Analysis ApS, O=Tera Analysis ApS, L=Svendborg, S=Denmark, C=DK

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
793B370BEA7EE5C86BDEAB1933654881

File PE Metadata
Compilation timestamp:
10/18/2016 2:48:31 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:8mD7LoY+JR1TIabzQp504mcG1FqrN4JeZxJRDcfP2VahBwXKnQ:8mv+JRTFVJ0JAhBwX1

Entry address:
0x1AF434

Entry point:
E8, EF, C9, 00, 00, E9, 89, FE, FF, FF, 8B, C1, 83, 60, 04, 00, C7, 00, A0, FC, 6B, 00, C6, 40, 08, 00, C3, 8B, FF, 55, 8B, EC, 8B, C1, 8B, 4D, 08, C7, 00, A0, FC, 6B, 00, 8B, 09, 89, 48, 04, C6, 40, 08, 00, 5D, C2, 08, 00, 8B, 41, 04, 85, C0, 75, 05, B8, A8, FC, 6B, 00, C3, 8B, FF, 55, 8B, EC, 83, 7D, 08, 00, 57, 8B, F9, 74, 2D, 56, FF, 75, 08, E8, 10, 21, 00, 00, 8D, 70, 01, 56, E8, 30, 19, 00, 00, 59, 59, 89, 47, 04, 85, C0, 74, 11, FF, 75, 08, 56, 50, E8, EB, 19, 00, 00, 83, C4, 0C, C6, 47, 08, 01, 5E...
 
[+]

Code size:
2.5 MB (2,666,496 bytes)

Scan Autorun.EXE - Powered by Reason Core Security