donext.exe

Wave Digital Studios GmbH

Publisher:
Wave Digital Studios GmbH  (signed and verified)

Version:
1.0.0.0

MD5:
0c63d473b3cfcb810c1ba65c9196bdca

SHA-1:
215fb5725437fdcd4ed2747b94bec2f925f17116

SHA-256:
32be1de0b505b62c2fc42d7447abd9481c112675ef0e6738b97db4a8a22cf5ac

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
6/23/2018 6:49:17 PM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:Malware.Symmi!6.1385
23.00.65.151013

File size:
3.2 MB (3,352,048 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\notebrowser\plugins\donext.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
1/16/2013 1:00:00 AM

Valid to:
1/17/2015 12:59:59 AM

Subject:
CN=Wave Digital Studios GmbH, O=Wave Digital Studios GmbH, L=Hamburg, S=Hamburg, C=DE

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
57972FBD60E796A0F4171EEFC7465A20

File PE Metadata
Compilation timestamp:
11/30/2014 12:44:59 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:rdBIL9AyaBUSRW9WFSkHT+eMg8rGVkTS62eE988YF3B:rctv9zeMcex

Entry address:
0x259968

Entry point:
55, 8B, EC, 83, C4, E8, 53, 56, 57, 33, C0, 89, 45, E8, 89, 45, EC, B8, 6C, F3, 64, 00, E8, FD, 48, DB, FF, 33, C0, 55, 68, 54, 9B, 65, 00, 64, FF, 30, 64, 89, 20, 33, C0, A3, D8, D1, 6F, 00, 33, C0, 55, 68, C3, 99, 65, 00, 64, FF, 30, 64, 89, 20, 68, 64, 9B, 65, 00, 6A, FF, 6A, 00, E8, 44, 7E, DB, FF, A3, D8, D1, 6F, 00, 33, C0, 5A, 59, 59, 64, 89, 10, EB, 0A, E9, 4C, ED, DA, FF, E8, 9F, F1, DA, FF, 83, 3D, D8, D1, 6F, 00, 00, 0F, 84, F8, 00, 00, 00, 33, C0, 55, 68, C8, 9A, 65, 00, 64, FF, 30, 64, 89, 20...
 
[+]

Entropy:
6.7230

Developed / compiled with:
Microsoft Visual C++

Code size:
2.3 MB (2,459,648 bytes)

Scan donext.exe - Powered by Reason Core Security