checkingprocessor.exe

TuMesa Inc.

Publisher:
TuMesa Inc.  (signed and verified)

MD5:
77a6f79d2193cf78fa4114ef51f23bdc

SHA-1:
e0245c6186c0735d2aed539265283c8e70f99099

SHA-256:
248149c3a34e93d5a19ab99fdb1f19be5cefadafffffdef8b832e22518889141

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 11:31:34 PM UTC  (a few moments ago)

File size:
3.2 MB (3,363,264 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\zennolab\zennoposter lite\progs\checkingprocessor.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
1/25/2016 2:00:00 AM

Valid to:
3/8/2019 1:59:59 AM

Subject:
CN=TuMesa Inc., O=TuMesa Inc., STREET="Suite 508, Marina Towers", STREET=Newtown Barracks Road, L=Belize City, S=--, PostalCode=00000, C=BZ

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
6AFF9543094A1FC1E2E7F4F8776961E2

File PE Metadata
Compilation timestamp:
1/26/2016 5:21:46 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:KxbFx9N1xNwMNOcFSXcK31dtDZ1e1Z6ZuiiJVzY8aZPjG:KxtN1xXSzdtDXRZQVzPMPjG

Entry address:
0x8FD30

Entry point:
55, 8B, EC, 83, C4, F0, B8, 00, 10, 40, 00, E8, 01, 00, 00, 00, 9A, 83, C4, 10, 8B, E5, 5D, E9, 70, EB, AD, 00, 23, 81, 79, BD, 03, 28, 5A, 74, 3C, 37, 06, EF, 8A, 60, B4, 0A, C4, BE, FA, 0D, 77, 01, DB, EC, A1, 96, 7F, C1, F7, 4C, 35, 7E, 3B, E6, EC, 48, 9A, B2, E8, 32, 6F, 5B, 48, 78, 39, 07, E3, 23, F9, 6F, 23, B4, 93, F6, FB, F6, 35, 69, E5, 5A, C3, B2, 61, A5, CF, 37, 80, 11, 33, F0, 5D, B3, 24, E1, 0F, 19, 0A, 11, C0, 30, 94, 2C, CA, 0C, 6E, 68, 21, A1, 88, 91, ED, 6F, 57, 4B, C6, 54, 64, 77, BA, 04...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.2 MB (2,273,280 bytes)

Scan checkingprocessor.exe - Powered by Reason Core Security