pha32.exe

Canon Inc.

Publisher:
Canon Inc.  (signed and verified)

MD5:
0731914340894a188e9733e0baaed6af

SHA-1:
fa1e55d07d64a602f84f88cf16e9f2a07fc19c9d

SHA-256:
7241505ca7514ed3bd700832001057e75b34dadb52af5c224ec22c6ff945db0e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 6:14:56 PM UTC  (today)

File size:
70.9 KB (72,592 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\win\res\cms_lib\data\pha32.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/10/2010 5:30:00 AM

Valid to:
5/11/2011 5:29:59 AM

Subject:
CN=Canon Inc., OU=Inkjet System Development Center, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Canon Inc., L=Kawasaki-shi, S=Kanagawa, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
15C98A3198BD4CBAEEC5A7E74A14A8F6

File PE Metadata
Compilation timestamp:
6/2/2010 12:09:36 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:8EEY6W0Q7LQmZPP+eDJ5TXCfLXGCXTgXka0nCrHNh:8EEY6TeDJ5TyfLbClVHNh

Entry address:
0x213A

Entry point:
E8, E8, 32, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 78, BD, 40, 00, 89, 0D, 74, BD, 40, 00, 89, 15, 70, BD, 40, 00, 89, 1D, 6C, BD, 40, 00, 89, 35, 68, BD, 40, 00, 89, 3D, 64, BD, 40, 00, 66, 8C, 15, 90, BD, 40, 00, 66, 8C, 0D, 84, BD, 40, 00, 66, 8C, 1D, 60, BD, 40, 00, 66, 8C, 05, 5C, BD, 40, 00, 66, 8C, 25, 58, BD, 40, 00, 66, 8C, 2D, 54, BD, 40, 00, 9C, 8F, 05, 88, BD, 40, 00, 8B, 45, 00, A3, 7C, BD, 40, 00, 8B, 45, 04, A3, 80, BD, 40, 00, 8D, 45, 08, A3, 8C, BD, 40...
 
[+]

Entropy:
6.0337

Code size:
29 KB (29,696 bytes)

Scan pha32.exe - Powered by Reason Core Security