savedatadumper.exe

Steffen Langnes

Publisher:
Steffen Langnes  (signed and verified)

MD5:
5021d536d6e57d839adcb54b85effaca

SHA-1:
2e85bb3ea233baaaa41658ef6bd9981030ea54c2

SHA-256:
cf6053b20365a7777cf6bd0b293bf4085e1d569dce052a40e8aec26f12171ae5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 10:40:45 PM UTC  (today)

File size:
164.6 KB (168,552 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\savedatadumper.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
3/19/2013 12:34:52 AM

Valid to:
3/20/2015 7:58:47 AM

Subject:
E=steffenlangnes@yahoo.no, CN=Steffen Langnes, L=Tromsø, S=Troms, C=NO, Description=4TGk44O124GASXnJ

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
092D

File PE Metadata
Compilation timestamp:
2/6/2015 11:06:50 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
12.0

CTPH (ssdeep):
3072:yzPKqe5fIDIiqlnDS2SgB5lgaYarFCh7INsxnPFXQPgJQQQPBQr:mCt+IisnDSTIDNFI0Ns3QPJLPe

Entry address:
0x1991B

Entry point:
E8, 51, 04, 00, 00, E9, 91, FE, FF, FF, CC, FF, 25, 64, D1, 41, 00, FF, 25, 6C, D1, 41, 00, 55, 8B, EC, FF, 15, 2C, D0, 41, 00, 6A, 01, A3, 94, 6F, 42, 00, E8, 3D, 05, 00, 00, FF, 75, 08, E8, 3B, 05, 00, 00, 83, 3D, 94, 6F, 42, 00, 00, 59, 59, 75, 08, 6A, 01, E8, 23, 05, 00, 00, 59, 68, 09, 04, 00, C0, E8, 24, 05, 00, 00, 59, 5D, C3, 55, 8B, EC, 81, EC, 24, 03, 00, 00, 6A, 17, E8, 2F, 05, 00, 00, 85, C0, 74, 05, 6A, 02, 59, CD, 29, A3, 78, 6D, 42, 00, 89, 0D, 74, 6D, 42, 00, 89, 15, 70, 6D, 42, 00, 89, 1D...
 
[+]

Entropy:
6.4457

Code size:
110.5 KB (113,152 bytes)

Scan savedatadumper.exe - Powered by Reason Core Security