EndNotePocketPCSync.EXE

EndNote X2

Thomson Scientific

Publisher:
Thomson ResearchSoft  (signed by Thomson Scientific)

Product:
EndNote X2

Description:
EndNote Pocket PC Synchronization

Version:
2.0.0 (Bld 3210)

MD5:
06e64e1812f53b17c19c96ce14254b77

SHA-1:
c1610256680afbcd7450d99d7e0ca06558055728

SHA-256:
63b4216e9351d54247939f8612b6c288786b19a71dd1938ad9018feb9a657286

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/18/2024 1:43:31 AM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/Virut.AI!Generic
4.6.5.141

File size:
157.3 KB (161,112 bytes)

Product version:
12.0.0 (Bld 3210)

Copyright:
Copyright © 2008 Thomson ResearchSoft. All rights reserved.

Original file name:
EndNotePocketPCSync.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\endnote x2\pocket pc\endnotepocketpcsync.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/18/2008 3:30:00 AM

Valid to:
4/1/2009 4:29:59 AM

Subject:
CN=Thomson Scientific, OU=ResearchSoft, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Thomson Scientific, L=Philadelphia, S=Pennsylvannia, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
73F372F8C851765D77BBEB6280846792

File PE Metadata
Compilation timestamp:
5/24/2008 10:36:11 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:abSWXDzmO3oziyxKA2vqlsScsY+BqY0Rjng+Lu0sm/DjUj4DUVRO8HWl//6Pu0:iXnFoziyIADsSb0NPu01j8gSRO8HWs

Entry address:
0x146E2

Entry point:
E8, D9, 04, 00, 00, E9, 36, FD, FF, FF, 6A, 14, 68, 78, C4, 41, 00, E8, 20, 04, 00, 00, FF, 35, F8, 12, 42, 00, 8B, 35, EC, 84, 41, 00, FF, D6, 59, 89, 45, E4, 83, F8, FF, 75, 0C, FF, 75, 08, FF, 15, F0, 84, 41, 00, 59, EB, 67, 6A, 08, E8, 3E, 05, 00, 00, 59, 83, 65, FC, 00, FF, 35, F8, 12, 42, 00, FF, D6, 89, 45, E4, FF, 35, F4, 12, 42, 00, FF, D6, 59, 59, 89, 45, E0, 8D, 45, E0, 50, 8D, 45, E4, 50, FF, 75, 08, 8B, 35, 04, 85, 41, 00, FF, D6, 59, 50, E8, 01, 05, 00, 00, 89, 45, DC, FF, 75, E4, FF, D6, A3...
 
[+]

Entropy:
6.0092

Code size:
92 KB (94,208 bytes)

Scan EndNotePocketPCSync.EXE - Powered by Reason Core Security