reconfigure.exe

BibleWorks,LLC

Publisher:
BibleWorks,LLC  (signed and verified)

MD5:
a016c5266660c2e5a908ee30832b0de9

SHA-1:
7b6ac0254b0e52ba3b01d48254a961278524afed

SHA-256:
8506d31cb2070db8ff645505e3542c7337233d41670b3e6e1eb47bae751f8cdf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:19:03 PM UTC  (today)

File size:
108.5 KB (111,128 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\reconfigure.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
9/24/2012 5:00:00 PM

Valid to:
12/18/2014 3:59:59 PM

Subject:
CN="BibleWorks,LLC", OU=SECURE APPLICATION DEVELOPMENT, O="BibleWorks,LLC", L=Norfolk, S=Virginia, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2115F72BFCF679A321C009752F082242

File PE Metadata
Compilation timestamp:
7/11/2013 9:28:12 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:bcV63VxUGg6J0Y71wWHi7dFfLt+uok30cOcphe9V:bAE66aY+lFfsuv0cOcpI9V

Entry address:
0x1931

Entry point:
E8, F6, 1E, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, A3, 90, EF, 40, 00, 5D, C3, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A1, 74, E0, 40, 00, 33, C5, 89, 45, FC, 53, 8B, 5D, 08, 57, 83, FB, FF, 74, 07, 53, E8, 58, 1F, 00, 00, 59, 83, A5, E0, FC, FF, FF, 00, 6A, 4C, 8D, 85, E4, FC, FF, FF, 6A, 00, 50, E8, 49, 1F, 00, 00, 8D, 85, E0, FC, FF, FF, 89, 85, D8, FC, FF, FF, 8D, 85, 30, FD, FF, FF, 83, C4, 0C, 89, 85, DC, FC, FF, FF, 89, 85, E0, FD, FF, FF, 89, 8D, DC, FD, FF, FF, 89, 95, D8...
 
[+]

Entropy:
5.7111

Code size:
36.5 KB (37,376 bytes)

The file reconfigure.exe has been seen being distributed by the following URL.

Scan reconfigure.exe - Powered by Reason Core Security