nejm_168981_bergenstal_22640.exe

The Sheridan Press

Publisher:
The Sheridan Press  (signed and verified)

Description:
iWrapper (SHERIDAN_NEJM_168981_Bergenst)

Version:
0, 0, 0, 0

MD5:
ff6d473ff370a21ebbfb0bc24f33dff6

SHA-1:
3b53be0ed8832da758e2616a3e6c14a17c950c17

SHA-256:
8faadea57c75324f3c2905869711678eb5a75fb9b99389cb9336d036cfcd81b4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/6/2024 2:56:05 PM UTC  (today)

File size:
2 MB (2,112,144 bytes)

Product version:
0, 0, 0, 0

Copyright:
Copyright © 2007 iWrapper, LLC

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\nejm_168981_bergenstal_22640.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
4/11/2010 5:00:00 PM

Valid to:
4/12/2011 4:59:59 PM

Subject:
CN=The Sheridan Press, OU=IT, O=The Sheridan Press, L=Hanover, S=Pennsylvania, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
586420AE75090904EA01DD33C1A7E542

File PE Metadata
Compilation timestamp:
10/2/2007 3:49:49 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:luld3q28cAUTqFcOeYoh3ICXA5YJpCUM7au7Th+N6FMs:lEOF2nhTuYJcnFMs

Entry address:
0x1000

Entry point:
68, 01, 90, 78, 00, E8, 01, 00, 00, 00, C3, C3, F8, 54, 59, A5, EC, 0B, D5, ED, FF, CC, AA, 79, 9C, 51, FB, 7D, CF, 64, F2, 61, 33, D2, 89, 72, 14, 63, 0B, 49, 09, 22, 80, EB, AF, 50, 52, 6C, CF, 87, 64, B4, 98, E2, 2A, 3E, 96, D4, E5, A8, D1, FA, BB, 11, 74, 9A, B2, 00, D5, B9, 5F, 87, CB, 21, C6, 8C, E2, 79, 4D, 42, 06, 2E, 27, BE, 68, 62, FD, 3B, 86, 04, CF, 82, 8B, E4, E8, 56, B6, C2, C5, 72, B5, 7D, 66, 56, D1, 87, AB, DF, 73, CA, 5C, 12, A3, C6, C6, 7F, 15, C2, 42, 76, 93, 7A, E2, 6D, AA, 14, F8, 90...
 
[+]

Entropy:
7.9911

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
184 KB (188,416 bytes)

Scan nejm_168981_bergenstal_22640.exe - Powered by Reason Core Security