_DelTemp.exe

Performance Now

Administaff Business Services, L.P.

Publisher:
Administaff Business Services, L.P.  (signed and verified)

Product:
Performance Now

Version:
4.01.0012

MD5:
cfa9c0b9a1a5201e0f9911c469ab2f41

SHA-1:
e6b897f444dc4fdcd60b8e08ababf18754a39b51

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/13/2017 7:56:40 PM UTC  (today)

File size:
49.4 KB (50,632 bytes)

Product version:
4.01.0012

Copyright:
Copyright© 2007 Administaff Business Services, L.P. All rights reserved.

Original file name:
_DelTemp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\hrtools applications\performance now 4\_deltemp.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
2/19/2008 6:00:00 PM

Valid to:
2/19/2010 5:59:59 PM

Subject:
CN="Administaff Business Services, L.P.", OU=HRTools, O="Administaff Business Services, L.P.", L=Kingwood, S=Texas, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
39F935D984409833E7A4C516B5B6572B

File PE Metadata
Compilation timestamp:
2/28/2008 5:47:47 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
384:gNL7JSmt1KCfK545aUqqNYIdlHJ9lL0H0zaxOne6M6GEAKRyJXc/7tvDS0SlRjJc:0L7LtxkqNNHps8aKxRyCt74l03qn4Lt

Entry address:
0x1694

Entry point:
68, 1C, 17, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 27, F4, 5A, 76, DE, EA, 8E, 4A, 9F, D7, 7E, 3F, DF, FC, 85, E8, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 70, 72, 6A, 44, 65, 6C, 54, 65, 6D, 70, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, B4, 1D, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, 08, 1E, 40, 00, 08, 90, 40, 00, 00, 00, 00, 00, 08, 10, 19, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.2050

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
32 KB (32,768 bytes)

Scan _DelTemp.exe - Powered by Reason Core Security