screensaverloader64.exe

Actual Window Manager

Actual Tools

Publisher:
Actual Tools  (signed and verified)

Product:
Actual Window Manager

Description:
Actual Window Manager Win64 Screen Saver Launcher

Version:
7.1

MD5:
08894928f178f67215815d1ec3914356

SHA-1:
500259f878ff061ce40e56a7f2c6569306e3e13f

SHA-256:
4c16965b30c03f25036ef95ef6d076e03a00b95fc890401144e2bc8a18e513e1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 6:06:14 AM UTC  (today)

File size:
227.5 KB (232,976 bytes)

Product version:
7.1

Copyright:
Copyright © Actual Tools 2002-2012

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\actual window manager\screensaverloader64.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
12/21/2011 2:00:00 AM

Valid to:
2/5/2013 1:59:59 AM

Subject:
CN=Actual Tools, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Actual Tools, L=Krasnoyarsk, S=Krasnoyarsk, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3F1C6309C6E40CBE883B0BCAE19719EF

File PE Metadata
OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
2.22

CTPH (ssdeep):
3072:2NoSeaGQFQVMOpREZ0zRH9+Cio6btu0kfXbd2xm5V1J1/ZooxjfZPpWnIe+UxhI5:oeaGQmVMOLH9Co6btu0kfRf/ZoCz074f

Entry address:
0x10CF0

Entry point:
48, 81, EC, 88, 00, 00, 00, C6, 04, 25, 08, 70, 43, 00, 00, E8, 2C, FF, FF, FF, 48, 81, C4, 88, 00, 00, 00, C3, 00, 00, 00, 00, 55, 48, 89, E5, 48, 81, EC, B0, 00, 00, 00, 48, 89, 5D, A0, 48, 89, 75, A8, 48, 89, 4D, F8, C6, 45, F0, 00, 48, BE, 00, 00, 00, 00, 00, 00, 00, 00, 48, 8D, 5D, E0, E8, A2, 05, FF, FF, 89, C1, 48, 8B, 55, F8, 41, B9, 10, 00, 00, 00, 48, 89, 74, 24, 20, 49, 89, D8, E8, 99, 05, FF, FF, 85, C0, 0F, 84, DF, 00, 00, 00, C7, 45, B8, 00, 00, 00, 00, C6, 45, D8, 01, E9, BD, 00, 00, 00, 90...
 
[+]

Entropy:
5.6704

Code size:
187.3 KB (191,808 bytes)

Scan screensaverloader64.exe - Powered by Reason Core Security