PROTAX10.EXE

ProSeries

Intuit

It runs as a scheduled task under the Windows Task Scheduler.
Publisher:
Intuit, Inc.  (signed by Intuit)

Product:
ProSeries (R)

Description:
ProSeries

Version:
wPro.2010.07.00.27

MD5:
2a77c3005bbb5977a35ae79af329f636

SHA-1:
c812dbeaf19f502b6827bc5d06dc2db1d92694f6

SHA-256:
8e20da33321ba4dfbb41eafcb0ae9fcff3b704b4f6797a874f8c83b454d12145

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 8:59:10 AM UTC  (today)

File size:
24 MB (25,198,936 bytes)

Product version:
wPro.2010.07.00.27

Copyright:
Copyright (C) 2010 Intuit Inc.

Trademarks:
ProSeries (R)

Original file name:
PROTAX10.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
6/28/2010 8:00:00 PM

Valid to:
8/20/2011 7:59:59 PM

Subject:
CN=Intuit, OU=666, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Intuit, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4E74E70AB43C054954483CBA84122A78

File PE Metadata
Compilation timestamp:
3/16/2011 1:20:47 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:vDlF1eZp88BWmfbt0GZYZZMPf6DR2yMHBGfow/Z9wV1Pggox4U:xQWotJYZZuf6DUyEdeZ9wV1Pggox3

Entry address:
0x73EF33

Entry point:
E8, 10, 08, 00, 00, E9, 36, FD, FF, FF, CC, FF, 25, DC, 86, F2, 00, FF, 25, E0, 86, F2, 00, FF, 25, E4, 86, F2, 00, FF, 25, E8, 86, F2, 00, FF, 25, EC, 86, F2, 00, 8B, FF, 55, 8B, EC, FF, 75, 08, E8, E1, DE, FF, FF, 59, 5D, C3, 6A, 08, B8, ED, 9E, E8, 00, E8, C3, 02, 00, 00, FF, 75, 08, 83, 65, FC, 00, E8, CC, DE, FF, FF, 59, 89, 45, EC, 8B, 45, EC, E8, 50, 03, 00, 00, C3, 83, 65, EC, 00, B8, 88, EF, B3, 00, C3, CC, FF, 25, 78, 87, F2, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 83, 3D, A0...
 
[+]

Entropy:
6.1370

Code size:
11.2 MB (11,692,544 bytes)

Scheduled Task
Task name:
{F46100A9-9503-4F88-BE16-34F4B2B36D91}

Trigger:
Registration (Runs on registration)