settings.EXE

Prowin.exe

Thomson Reuters

Publisher:
Thomson Reuters  (signed and verified)

Product:
Prowin.exe

Description:
ProDoc Timeslips Settings

Version:
5.5.0.1

MD5:
ef2628ab8636889633e87945d02d11e6

SHA-1:
2a5f678d44563b5b54f9360c90e9bf79fe70d7fe

SHA-256:
462e1af13d979b8ee9a8f9da2e2d78c404e65ed180a10da6b2eb40c185d1d8ce

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/5/2024 6:49:15 PM UTC  (today)

File size:
729.8 KB (747,312 bytes)

Product version:
5.50

Copyright:
Thomson Reuters

Original file name:
settings.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\settings.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/10/2014 7:00:00 PM

Valid to:
4/11/2016 6:59:59 PM

Subject:
CN=Thomson Reuters, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Legal, O=Thomson Reuters, L=Eagan, S=Minnesota, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1A1E81A4BC5075036614E95601416F1D

File PE Metadata
Compilation timestamp:
3/2/2009 2:15:23 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.50

CTPH (ssdeep):
12288:2+zqHsHxHxo3Z3Pm9GBFwrCONRSztCONRSztCONRZpCONRztC3RSz8nz4nzpy3Rl:2ehRHkdPzBFiCONRSztCONRSztCONRZU

Entry address:
0x1395C

Entry point:
DB, E3, 31, C0, BB, 40, 9E, 44, 00, 89, C1, E8, CC, DE, FE, FF, 09, C0, 74, 14, B8, 20, BA, 42, 00, E8, C6, DE, FE, FF, E8, 61, DE, FE, FF, B8, 00, 00, 00, 00, E8, 6F, DE, FE, FF, 90, 90, 90, B8, A4, E0, 45, 00, E8, A2, 0E, 00, 00, 8B, 58, 04, 8B, 1B, 89, 58, 04, BB, A4, E0, 45, 00, E8, C8, DD, FE, FF, C3, 90, 90, 90, A1, FC, 11, 45, 00, 8B, 00, A3, FC, 11, 45, 00, C3, 90, 90, 90, B8, F4, E9, 45, 00, E8, 72, 0E, 00, 00, 89, C2, B8, C8, E2, 45, 00, E8, 66, 0E, 00, 00, 89, C1, B8, A4, E0, 45, 00, E8, 5A, 0E...
 
[+]

Entropy:
5.4493

Code size:
274 KB (280,576 bytes)

Scan settings.EXE - Powered by Reason Core Security