Novaschem.exe

Skola24 Schema

Nova Software AB

Publisher:
Nova Software  (signed by Nova Software AB)

Product:
Skola24 Schema

Version:
1.0.4932.52764

MD5:
01ead4b4284d2711bc90d77756e1fefb

SHA-1:
b1dc0d3c2563d2515d10d0ea7af2751518d0468b

SHA-256:
724f52e8ced7c7dbcff4d0960afc8a62f56ded9a4ed03579bdeb879ff9a80926

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/4/2024 11:05:53 AM UTC  (today)

File size:
6.6 MB (6,936,032 bytes)

Product version:
1.0.4932.52764

Copyright:
Copyright © 1986-2014

Original file name:
Novaschem.exe

File type:
Executable application (Win32 EXE)

Language:
Swedish (Sweden)

Common path:
C:\users\{user}\appdata\local\apps\2.0\xqe5qv5b.tq8\xab2t0aq.grl\novaschem_1ec943bb1baee35c_0001.0000_none_34957d7a4603de4b\novaschem.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
9/7/2015 2:00:00 AM

Valid to:
9/7/2018 1:59:59 AM

Subject:
CN=Nova Software AB, O=Nova Software AB, STREET=Storgatan 5A, L=FALKOPING, S=SWEDEN, PostalCode=52142, C=SE

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00AA3ABD17423A318D1B132401807A85AA

File PE Metadata
Compilation timestamp:
8/1/2016 8:02:42 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
98304:oZ1PVT1iq8gr384XPPusroq0WJNw/is0Vej8WfE5WU4tCVTP0pGtoPe:2PVqgNHaJe

Entry address:
0x4F6962

Entry point:
FF, 25, D8, 14, 95, 00, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4D, F0, E9, 58, 18, B1, FF, 8B, 4D, F0, 83, C1, 34, E9, 9D, FD, B0, FF, B8, A0, 44, A2, 00, E9, 73, E2, FF, FF, CC, CC, CC, 8B, 4D, F0, E9, 28, 23, B1, FF, B8, D4, 44, A2, 00, E9, 5E, E2, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8D, 4D, E8, E9, 68, C1, EE, FF, B8, 00, 45, A2, 00, E9, 3E, E2, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8D, 4D, B8, E9, 48, C1, EE, FF, 8D, 4D, C0, E9, 80, 0A, B1, FF, 8B, 4D...
 
[+]

Code size:
5.3 MB (5,563,392 bytes)

Scan Novaschem.exe - Powered by Reason Core Security