heraser.exe

Tracks Eraser Pro

Acesoft Studio

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Internet History Eraser’.
Publisher:
Acesoft  (signed by Acesoft Studio)

Product:
Tracks Eraser Pro

Version:
7.05.0253

MD5:
c9a6b38587c8a7e81459cc4af16acec2

SHA-1:
d191a0ab9dfe88979e2facfb2dc56bfe5bd8f99a

SHA-256:
778d7f133ecdd1dc4e3e653e25c1b737ec75ab29b25b79ae69f86d6635683f89

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 4:53:41 PM UTC  (today)

File size:
1.4 MB (1,417,024 bytes)

Product version:
7.05.0253

Original file name:
heraser.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\acesoft\internet history eraser\heraser.exe

Digital Signature
Signed by:

Authority:
WoSign, Inc.

Valid from:
1/2/2008 1:00:00 AM

Valid to:
1/2/2011 12:59:59 AM

Subject:
CN=Acesoft Studio, OU=Class 3 - for Microsoft Authenticode Signing, O=Acesoft Studio, L=Shang Hai, S=Shang Hai, C=CN

Issuer:
CN=WoSign Code Signing Authority, O="WoSign, Inc.", C=US

Serial number:
00F7DC8FB78346B3EB495254055954EC16

File PE Metadata
Compilation timestamp:
2/3/2009 4:30:40 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:oGQV5D1Bkl2UvnLn1xFG4+uV/J+m0u/MQSUzYy4F/McAZdcxqO7f:opgRnLn1xFG4+uV/J+m0u/MQSUzYy4Fx

Entry address:
0xB198

Entry point:
68, 94, BA, 40, 00, E8, F0, FF, FF, FF, 00, 00, 40, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, 81, 9F, 16, 2F, B2, 46, 83, 45, 9D, 56, 45, B6, E4, 78, 92, 8E, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 49, 48, 45, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 88, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 2F, 00, 00, 00, 07, 99, 3F, 88, E7, E9, BC, 45, B8, 06, 4B, CB, E8, AC, 8F, DD, 01, 00, 00, 00, 98, 00, 00, 00, A8, 00, 00, 00, 01, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
1.3 MB (1,400,832 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Internet History Eraser

Command:
C:\Program Files\acesoft\internet history eraser\heraser.exe min


Scan heraser.exe - Powered by Reason Core Security