FMSPH8.exe

Frank

Edurite Technologies Pvt Ltd

It runs as a scheduled task under the Windows Task Scheduler.
Publisher:
Edurite Technologies Pvt Ltd  (signed and verified)

Product:
Frank

Description:
Frank Middle School Physics Class 8

Version:
1.00

MD5:
374d4f2bd6e88ac45e34d8bb6bbe87e8

SHA-1:
391b61a4b99e6d14e31e10dfde3861e8e0808c70

SHA-256:
d50cda0ae3cc82acb2052eab0c1b58041bced1df54738850b6388c789bbfe2ad

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 11:15:51 AM UTC  (today)

File size:
91.3 KB (93,448 bytes)

Product version:
1.00

Original file name:
FMSPH8.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\edurite\frank modern certificate physics for class 8\fmsph8.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
4/2/2007 5:30:00 AM

Valid to:
10/10/2008 5:29:59 AM

Subject:
CN=Edurite Technologies Pvt Ltd, OU=SECURE APPLICATION DEVELOPMENT, O=Edurite Technologies Pvt Ltd, L=Bangalore, S=Karnataka, C=IN

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
6E7E98D8924525B48455472B271278CE

File PE Metadata
Compilation timestamp:
7/12/2007 11:30:15 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
768:Z6GhMnFMh9HbThi9CIsFpHFM+FM6AuO2/fwDj7lVeQ0XzOJ9CriJqZUJlp1yp/HS:Z6C/3Y9CIsYuLQP7beTzoqZUwybnV1

Entry address:
0x16E8

Entry point:
68, C4, 40, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 75, 1F, 96, 57, C1, 7E, 13, 47, 96, A3, A7, A3, 49, E1, D0, 8E, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 72, 6F, 6A, 65, 63, 74, 31, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, FF, CC, 31, 00, 05, 09, 78, E4, 10, 33, 9D, 5A, 4B, 91, 10, BF, D0, 10, 2E, EF, 48, AF, E0, 28, B6, 4F, 0E, B0, 4F, 86, 0B, 38, 91, C9, 6F, B2, 1E, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00...
 
[+]

Entropy:
5.6107

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
72 KB (73,728 bytes)

Scheduled Task
Task name:
{38C395E1-43BE-4AB1-8A2B-A813D9DD3790}

Trigger:
Registration (Runs on registration)


Scan FMSPH8.exe - Powered by Reason Core Security