installer.exe

ThinkFree Office

HANCOM. INC.

This is a self-extracting archive and installer.
Publisher:
Hancom Inc.  (signed by HANCOM. INC.)

Product:
ThinkFree Office

Version:
7.0.150427.234

MD5:
e5ac90e2a9ba73e889af0604876bcd2b

SHA-1:
af08d6af8c65bcdd2104740e3f1b364a95b11d99

SHA-256:
6f159f42467fa10496122273b165f0fd03eee3865b28595ac608a1a291598fbf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/3/2024 5:39:18 PM UTC  (today)

File size:
99.1 MB (103,907,608 bytes)

Product version:
7.0.150427.234

Copyright:
Hancom Inc.

Original file name:
windows.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\thinkfree office7\program\installdata\setup\installer.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
11/13/2015 9:00:00 AM

Valid to:
7/14/2018 8:59:59 AM

Subject:
CN=HANCOM. INC., OU=java, O=HANCOM. INC., L=Seongnam-si, S=Gyeonggi-do, C=KR

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
46FE9987939CFAF413C67684062B70AE

File PE Metadata
Compilation timestamp:
7/27/2012 10:23:00 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
2.56

CTPH (ssdeep):
3145728:v+Aq3Lk+AXBiXU9u1f6qBcv+NI74F1iEMl8:E4JBiXIO7Sv+NI7W/

Entry address:
0x11F8

Entry point:
4D, 5A, 90, 00, 03, 00, 00, 00, 04, 00, 00, 00, FF, FF, 00, 00, B8, 00, 00, 00, 00, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 80, 00, 00, 00, 0E, 1F, BA, 0E, 00, B4, 09, CD, 21, B8, 01, 4C, CD, 21, 54, 68, 69, 73, 20, 70, 72, 6F, 67, 72, 61, 6D, 20, 63, 61, 6E, 6E, 6F, 74, 20, 62, 65, 20, 72, 75, 6E, 20, 69, 6E, 20, 44, 4F, 53, 20, 6D, 6F, 64, 65, 2E, 0D, 0D, 0A, 24, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9993  (probably packed)

Code size:
181.5 KB (185,856 bytes)

Scan installer.exe - Powered by Reason Core Security