iqserv.exe

Inquiry Basic Edition

MetaProducts Corporation

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Inquiry’.
Publisher:
MetaProducts corp.  (signed by MetaProducts Corporation)

Product:
Inquiry Basic Edition

Description:
MetaProducts Inquiry Server

Version:
1.11.0.608

MD5:
ae889d2065867f4953ef3caaa1ef7f4a

SHA-1:
a8d9ba62a3c957599e33fbb283524481d1eba4a6

SHA-256:
200653e95013c9696b0325a09d5b20af880be3c82f06bee230ec7d9051985764

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 11:14:28 PM UTC  (a few moments ago)

File size:
1.7 MB (1,759,376 bytes)

Product version:
1.11

Copyright:
Copyright (c) 2003-2013 MetaProducts Corporation

Original file name:
iqserv.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\metaproducts inquiry\iqserv.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
1/25/2012 1:00:00 AM

Valid to:
1/25/2015 12:59:59 AM

Subject:
CN=MetaProducts Corporation, O=MetaProducts Corporation, STREET=702 Berrocales de Avila, L=Tampa, S=Florida, PostalCode=33613, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00A445D3C646E970A5FB6000FB0234D92E

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:xHrw6GEayaGUJPGwffI//HYo6vzJWmA0uuIuscmOwFmKSUe0Td9QzwahWXbdB3T7:xH3awUED0ocm5wK20RQWXbzT6Af9894

Entry address:
0x142860

Entry point:
55, 8B, EC, 83, C4, E8, 53, 33, C0, 89, 45, EC, 89, 45, E8, B8, 50, 21, 54, 00, E8, 07, 43, EC, FF, 33, C0, 55, 68, B4, 29, 54, 00, 64, FF, 30, 64, 89, 20, B8, CC, 29, 54, 00, E8, D3, FF, F0, FF, E8, 5E, F7, FF, FF, 84, C0, 0F, 85, F1, 00, 00, 00, E8, 61, 03, F1, FF, B0, 01, E8, 5A, E7, FC, FF, E8, 55, 1B, F6, FF, B0, 3A, E8, 36, EF, F0, FF, 48, 75, 0B, B8, 24, 04, 51, 00, 50, E8, C8, ED, FB, FF, B2, 01, A1, 50, F5, 50, 00, E8, FC, 0C, EC, FF, 8B, D8, BA, E0, 29, 54, 00, B1, 01, B8, 08, 2A, 54, 00, E8, AD...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.3 MB (1,317,888 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Inquiry

Command:
"C:\Program Files\metaproducts inquiry\iqserv.exe" \autorun


Scan iqserv.exe - Powered by Reason Core Security