tabletpro2004.exe

decode zip unicode version.

Lovesummertrue Software

This is a self-extracting archive and installer. The file has been seen being downloaded from www.lovesummertrue.com.
Publisher:
Lovesummertrue Software  (signed and verified)

Product:
decode zip unicode version.

Description:
Tablet Pro Installer

Version:
2.0.0.4

MD5:
9684a3a46a18e1054f533d8c6f3a3a79

SHA-1:
cd6079aa8a993781ff46bc9d20e86c0d832b7179

SHA-256:
1b6e51f8bada8c286da179a11aac8b3f4d07d5aa3dbece04c467081f5e0fa3c6

Scanner detections:
3 / 68

Status:
Clean  (3 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/23/2024 7:26:27 PM UTC  (today)

Scan engine
Detection
Engine version

AegisLab AV Signature
Win.Adware.Agent
2.1.4+

IKARUS anti.virus
PUA.Multiplug
t3scan.2.0.7.0

Zillya! Antivirus
Adware.DomaIQ.Win32.1200
2.0.0.2673

File size:
3.9 MB (4,087,592 bytes)

Product version:
6.05

Copyright:
Copyright(c) 2016 Lovesummertrue Software

Original file name:
deczipW.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\tabletpro2004.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
12/22/2015 8:00:00 AM

Valid to:
12/22/2016 7:59:59 AM

Subject:
CN=Lovesummertrue Software, O=Lovesummertrue Software, STREET="1-12-14-2, Sanroku-cho", L=Sabae, S=Fukui, PostalCode=916-0021, C=JP

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00AD964CAC7D1A196DCC090906EF9898CC

File PE Metadata
Compilation timestamp:
10/17/2010 2:01:36 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:Atx1r7nlyx68jhlglnzNQdz903+fG5SKOmJ385KiRId505:Q17nolrgw03PNOsMD6Q5

Entry address:
0x334A

Entry point:
55, 8B, EC, 81, EC, 1C, 03, 00, 00, 8D, 85, 6C, FF, FF, FF, 56, 50, C7, 85, 6C, FF, FF, FF, 94, 00, 00, 00, FF, 15, 78, A0, 40, 00, 6A, 00, FF, 15, E0, A0, 40, 00, A3, 9C, FB, 40, 00, FF, 15, 00, A0, 40, 00, FF, 15, 54, A1, 40, 00, 8B, F0, 6A, 02, 59, 66, 8B, 06, 66, 3D, 22, 00, 75, 1B, 66, 8B, 04, 0E, 03, F1, 66, 85, C0, 74, 06, 66, 3D, 22, 00, 75, EF, 66, 83, 3E, 22, 75, 12, 03, F1, EB, 0E, 66, 3D, 20, 00, 76, 08, 03, F1, 66, 83, 3E, 20, 77, F8, 66, 8B, 06, 66, 85, C0, 74, 06, 66, 3D, 20, 00, 76, E0, 39...
 
[+]

Entropy:
7.9892

Developed / compiled with:
Microsoft Visual C++

Code size:
36 KB (36,864 bytes)

The file tabletpro2004.exe has been seen being distributed by the following URL.

Scan tabletpro2004.exe - Powered by Reason Core Security