qalamdan.exe

Scan qalamdan.exe - Powered by Reason Core Security
Version:
4.3.2.0

MD5:
406af5815106c61304970e277ce73dfd

SHA-1:
efd87713f1b12629313b380a95a49a05b46722c2

SHA-256:
e334dfe054270c3c1f6b099e4575d76b12dc296da6c8fee21ef0052284021397

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/9/2016 12:50:45 PM UTC  (today)

File size:
802 KB (821,248 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\maryamsoft\maryam\qalamdan.exe

File PE Metadata
Compilation timestamp:
2/7/2010 3:44:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
12288:JQ92LDuV+QSSFm1DHjepLk6y0ExfTs2OPYLxR3eky8BdAZoxeS57oWg18888888u:xW+QSSFMDaWhxfTs2OPYL3ukc+gGPoG

Entry address:
0x1440

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, 9C, E0, 49, 00, A1, 8F, E0, 49, 00, C1, E0, 02, A3, 93, E0, 49, 00, 52, 6A, 00, E8, 8B, B3, 09, 00, 8B, D0, E8, EA, B4, 07, 00, 5A, E8, C8, B0, 07, 00, E8, D3, B9, 07, 00, 6A, 00, E8, C4, CA, 07, 00, 59, 68, 38, E0, 49, 00, 6A, 00, E8, 65, B3, 09, 00, A3, 97, E0, 49, 00, 6A, 00, E9, A7, 47, 08, 00, E9, F6, CA, 07, 00, 33, C0, A0, 81, E0, 49, 00, C3, A1, 97, E0, 49, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, EC, 00, 00, 00, 0B, C9...
 
[+]

Entropy:
6.6223

Code size:
628 KB (643,072 bytes)

The file qalamdan.exe has been discovered within the following programs.

Font Pack 89  by MaryamSoft
About 3% of users remove it
Maryam  by MaryamSoft
About 7% of users remove it
 
Powered by Should I Remove It?

Scan qalamdan.exe - Powered by Reason Core Security