signlocal.exe

Symprex Mail Signature Manager

Symprex Limited

Publisher:
Symprex Limited  (signed and verified)

Product:
Symprex Mail Signature Manager

Description:
Symprex Mail Signature Manager Sign

Version:
4.08.0005

MD5:
376b7e1f290ceb69c22a28fc4a629cd7

SHA-1:
05ab5561cd635773d485f2df803582c3d878ab9b

SHA-256:
6d5758a820f837aa2a382d8b69ddd88bbaa908597d1a2af669c618bfec7e84a7

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/19/2024 11:32:19 AM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
Suspicious_GEN.F47V0320
7.2.117

File size:
853.4 KB (873,888 bytes)

Product version:
4.08.0005

Copyright:
(c) Symprex Limited 2011. All Rights Reserved.

Original file name:
sign.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\signlocal.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
7/19/2009 7:00:00 PM

Valid to:
7/21/2012 6:59:59 PM

Subject:
CN=Symprex Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Symprex Limited, L=Richmond, S=Surrey, C=GB

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1C70395D696D0CF6A88E8122582DC692

File PE Metadata
Compilation timestamp:
1/13/2012 6:00:51 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:CsNiRC2urMLxfmoGKgZIlSSyMJPqzcU+KUVENJl6qP04ItGqRKioXLTPPFOdXlTT:nIuUV2l6qfIlRKio7TPPcdXlTtikf

Entry address:
0xF914

Entry point:
68, 50, 00, 41, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 60, 00, 00, 00, 38, 00, 00, 00, 09, AA, 93, 48, D9, 7D, 4A, 4B, B3, F1, 7C, B6, E6, 7E, F0, A5, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 53, 69, 67, 6E, 00, 00, 00, 00, 53, 79, 6D, 70, 72, 65, 78, 20, 4D, 61, 69, 6C, 20, 53, 69, 67, 6E, 61, 74, 75, 72, 65, 20, 4D, 61, 6E, 61, 67, 65, 72, 20, 53, 69, 67, 6E, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 1B, 00, F4, 4F, 41, 00, 00, 00, 00, 00, FF, FF, FF, FF...
 
[+]

Entropy:
6.0721

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
736 KB (753,664 bytes)

Scan signlocal.exe - Powered by Reason Core Security