startupver6.05.0000.exe

decode zip unicode version.

NIPPON TELEGRAPH AND TELEPHONE WEST CORPORATION

Publisher:
pon software   (signed by NIPPON TELEGRAPH AND TELEPHONE WEST CORPORATION)

Product:
decode zip unicode version.

Description:
Win32 Zip Self-Extractor

Version:
6.05

MD5:
ab2346e73a0b3be19c3a6eb9d5220fb0

SHA-1:
b00cb7d772fad7f0110ab7a31d48dd42cd8d8d3e

SHA-256:
2665b042ddc42b20fff947280f5473a5df2718ba84ba7d6c1c3ed8295418fb95

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 2:14:35 AM UTC  (today)

File size:
5.4 MB (5,661,752 bytes)

Product version:
6.05

Copyright:
Copyright(c) 2001-2010 by pon software

Original file name:
deczipW.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\startupver6.05.0000.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/14/2011 9:00:00 AM

Valid to:
9/14/2012 8:59:59 AM

Subject:
CN=NIPPON TELEGRAPH AND TELEPHONE WEST CORPORATION, OU=research and development center, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NIPPON TELEGRAPH AND TELEPHONE WEST CORPORATION, L=Osaka-shi, S=Osaka, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
45311EA979033849D4E70D20D6990237

File PE Metadata
Compilation timestamp:
10/17/2010 3:01:36 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:q8mg6ZMsFi24FYub1gdqQX04BNy5MrxNOdeCx2qDSee8O6tuzWDguEZN2Enwe8uO:916Zni24+41TkZBNxNc2mftu4iZN2Eno

Entry address:
0x334A

Entry point:
55, 8B, EC, 81, EC, 1C, 03, 00, 00, 8D, 85, 6C, FF, FF, FF, 56, 50, C7, 85, 6C, FF, FF, FF, 94, 00, 00, 00, FF, 15, 78, A0, 40, 00, 6A, 00, FF, 15, E0, A0, 40, 00, A3, 9C, FB, 40, 00, FF, 15, 00, A0, 40, 00, FF, 15, 54, A1, 40, 00, 8B, F0, 6A, 02, 59, 66, 8B, 06, 66, 3D, 22, 00, 75, 1B, 66, 8B, 04, 0E, 03, F1, 66, 85, C0, 74, 06, 66, 3D, 22, 00, 75, EF, 66, 83, 3E, 22, 75, 12, 03, F1, EB, 0E, 66, 3D, 20, 00, 76, 08, 03, F1, 66, 83, 3E, 20, 77, F8, 66, 8B, 06, 66, 85, C0, 74, 06, 66, 3D, 20, 00, 76, E0, 39...
 
[+]

Entropy:
7.9949

Developed / compiled with:
Microsoft Visual C++

Code size:
36 KB (36,864 bytes)

Scan startupver6.05.0000.exe - Powered by Reason Core Security