eIRG.exe

Client

Wirestone LLC

Publisher:
Microsoft  (signed by Wirestone LLC)

Product:
Client

Version:
1.0.0.0

MD5:
3e7a4c01929b9b0162646d79387b2ff6

SHA-1:
d54c6f904e31521ddb843d36d1cbc4f8703840c7

SHA-256:
6e8bef078064389676b9e90f99e556b70ac37e2d08cc1de06be7ea443bddf3f9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 4:17:09 AM UTC  (today)

File size:
2.3 MB (2,460,024 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Microsoft 2010

Original file name:
eIRG.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\apps\2.0\chmdyb0p.89y\70b907wm.ctm\eirg..tion_f4c34ebbb8372857_0002.000c_5068259c11be5c08\eirg.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
3/2/2011 5:00:00 PM

Valid to:
3/19/2013 5:59:59 PM

Subject:
CN=Wirestone LLC, OU=COLORADO SOFTWARE DEV. TEAM, O=Wirestone LLC, L=Fort Collins, S=Colorado, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2FAE50678B152932CF4BD498D13DD308

File PE Metadata
Compilation timestamp:
6/21/2012 11:49:56 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:T4xeVnmvq1tYe3qRq1tYe3oBACdio/NuFy1tYe3+:T4Imvq1tYe3yq1tYe3oBsy1tYe3+

Entry address:
0x20BA8E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.1167

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
2 MB (2,137,088 bytes)

Scan eIRG.exe - Powered by Reason Core Security