runoncesetup.exe

Winton Information Co., Ltd.

Publisher:
Winton System Co., Ldt.  (signed by Winton Information Co., Ltd.)

Version:
1.0.0.0

MD5:
32c7575e081c93dcbdf69564da998178

SHA-1:
b9f9409075b5bddd5f60753997dc9f257c7eeebe

SHA-256:
59d6d30fbb1e627b59cdce72c4349fb59bfb1c3c60bbee23ba7faa41a0773ff3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 7:06:36 PM UTC  (today)

File size:
3.2 MB (3,382,928 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\57f1fc0c\mis_ii\runoncesetup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/29/2009 8:00:00 AM

Valid to:
7/30/2010 7:59:59 AM

Subject:
CN="Winton Information Co., Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Winton Information Co., Ltd.", L=Taipei, S=Taipei, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3C934BF1774DEBBEE9E96F1D21117123

File PE Metadata
Compilation timestamp:
6/20/1992 6:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:gScyNOltZ1CzUANab7idZ06rgGV38uIZlOL8CVRmU:gSO1NWJD8lcTVRm

Entry address:
0x2BA740

Entry point:
55, 8B, EC, 83, C4, F0, B8, E8, 9D, 6B, 00, E8, B8, C9, D4, FF, A1, 14, EA, 6B, 00, 8B, 00, E8, F4, 6E, DD, FF, A1, 14, EA, 6B, 00, 8B, 00, BA, A0, A7, 6B, 00, E8, CB, 6A, DD, FF, 8B, 0D, 58, E6, 6B, 00, A1, 14, EA, 6B, 00, 8B, 00, 8B, 15, 44, 96, 6B, 00, E8, E3, 6E, DD, FF, A1, 14, EA, 6B, 00, 8B, 00, E8, 57, 6F, DD, FF, E8, CE, A0, D4, FF, 00, 00, FF, FF, FF, FF, 0D, 00, 00, 00, 52, 75, 6E, 4F, 6E, 63, 65, 20, 53, 65, 74, 75, 70, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.5735

Developed / compiled with:
Microsoft Visual C++

Code size:
2.7 MB (2,856,960 bytes)

Scan runoncesetup.exe - Powered by Reason Core Security