Core Temp.exe

Core Temp

Artur Liberman

It runs as a scheduled task under the Windows Task Scheduler triggered to execute each time a user logs in.
Publisher:
Artur Liberman  (signed and verified)

Product:
Core Temp

Description:
CPU temperature and system information utility

Version:
1.0.8.0

MD5:
c8fc4927e0368c2e762f3c96625027ce

SHA-1:
f666ef372f37ec9d9aa2f28980ad032ce1c403c5

SHA-256:
fd907c330417941c9ba528f476e33738e18e594f20bcf2951c75e1c2619f563f

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/26/2024 10:32:32 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W64.HfsAdware
1.3.0.7400

File size:
870.5 KB (891,344 bytes)

Product version:
1.0.8.0

Copyright:
Copyright (C) 2006 - 2016 Alcpu

Original file name:
Core Temp.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
3/5/2013 4:18:55 PM

Valid to:
3/5/2016 4:18:55 PM

Subject:
CN=Artur Liberman, C=IL

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112124A45ABBF7C551DEB213B28633C3DCAD

File PE Metadata
Compilation timestamp:
1/18/2016 10:54:40 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:XqvB2R0d/1Vbasq3BiprEFXgdToRGfTNJL5dZf5R3dZ+Xlp:XqAR0d/EFXgdThTfZrN4Xlp

Entry address:
0x681BC

Entry point:
48, 83, EC, 28, E8, EB, D0, 00, 00, 48, 83, C4, 28, E9, 52, FE, FF, FF, CC, CC, 40, 53, 48, 83, EC, 30, 48, 8B, D9, B9, 0E, 00, 00, 00, E8, ED, CA, 00, 00, 90, 48, 8B, 43, 08, 48, 85, C0, 74, 3F, 48, 8B, 0D, EC, 30, 06, 00, 48, 8D, 15, DD, 30, 06, 00, 48, 89, 4C, 24, 20, 48, 85, C9, 74, 19, 48, 39, 01, 75, 0F, 48, 8B, 41, 08, 48, 89, 42, 08, E8, B5, C8, FF, FF, EB, 05, 48, 8B, D1, EB, DD, 48, 8B, 4B, 08, E8, A5, C8, FF, FF, 48, 83, 63, 08, 00, B9, 0E, 00, 00, 00, E8, 9A, C9, 00, 00, 48, 83, C4, 30, 5B, C3...
 
[+]

Code size:
504 KB (516,096 bytes)

Scheduled Task
Task name:
Core Temp Autostart Ra

Trigger:
Logon (Runs on logon)


Scan Core Temp.exe - Powered by Reason Core Security