ezbackupquickbookspro.exe

Perception

Publisher:
Perception  (signed and verified)

MD5:
195a7f0c8f93704cb95341c64300417f

SHA-1:
35a932be23f8d93054a5fc23c26bf5b698cc92c5

SHA-256:
986ae8dfb682c7b44723799888a231204984bd66fd0ccd5192ac57d030616186

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/20/2024 9:57:42 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
W32/Ramnit.C
7.11.30.172

File size:
2.6 MB (2,695,832 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\perception\ez backup quickbooks pro\ezbackupquickbookspro.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
2/21/2013 12:23:35 AM

Valid to:
2/22/2015 4:31:48 PM

Subject:
E=chris@cmfperception.com, CN=Perception, O=Perception, L=Ottawa, S=Ontario, C=CA, Description=05hdlBY9aU5F8LhF

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
08E8

File PE Metadata
Compilation timestamp:
6/19/1992 12:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:DsyAcIhwW5AcD5A4gscvjTLWYM83hSbRU0RXWpCw2hYDgH1RcyBxCxjZ8Y3GqXZv:4H1PlWPjRMe0I0V7VBxCxNnuj/1Q

Entry address:
0x196524

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 74, 5F, 59, 00, E8, 17, 0E, E7, FF, 8B, 1D, 38, C1, 61, 00, A1, 70, C0, 61, 00, 83, 38, 00, 75, 11, BA, EC, 65, 59, 00, 33, C0, E8, 33, 8C, F3, FF, E9, 8C, 00, 00, 00, 8B, 03, E8, 47, 7D, EB, FF, 8B, 03, BA, 84, 66, 59, 00, E8, 47, 79, EB, FF, 8B, 0D, 3C, C4, 61, 00, 8B, 03, 8B, 15, 64, 8D, 56, 00, E8, 40, 7D, EB, FF, 8B, 0D, B8, C1, 61, 00, 8B, 03, 8B, 15, AC, 6A, 55, 00, E8, 2D, 7D, EB, FF, 8B, 0D, 64, B9, 61, 00, 8B, 03, 8B, 15, C0, 59, 56, 00, E8, 1A, 7D, EB, FF, 8B, 0D...
 
[+]

Entropy:
6.3668

Developed / compiled with:
Microsoft Visual C++

Code size:
1.6 MB (1,660,928 bytes)

Scan ezbackupquickbookspro.exe - Powered by Reason Core Security