tcw.exe

TimeClockWindow

ZPAY Payroll Systems, Inc.

Publisher:
ZPAY Payroll Systems  (signed by ZPAY Payroll Systems, Inc.)

Product:
TimeClockWindow

Version:
2.0.39.0

MD5:
2e2b631f4433fe00ea5a1a18351dfd9f

SHA-1:
3bafd76727bf476e1a85108559fe8df7fecd4ecc

SHA-256:
39c216fe8635ea76119c92223f072add89c4f48f310f302118b6ce6d66b20566

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 1:53:30 AM UTC  (today)

File size:
11.3 MB (11,809,504 bytes)

Product version:
2.0.0.0

Copyright:
Copyright © 2008-2013 by ZPAY Payroll Systems

Original file name:
tcw.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\timeclockwindow\tcw.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/14/2012 4:00:00 PM

Valid to:
11/15/2015 3:59:59 PM

Subject:
CN="ZPAY Payroll Systems, Inc.", O="ZPAY Payroll Systems, Inc.", STREET=10745 Serenity Ln, L=Savanna, S=IL, PostalCode=61074, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
35643525EAA4C5016E68EAB95A621EC8

File PE Metadata
Compilation timestamp:
8/9/2015 1:40:36 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:skBccHAnGYjXpTC/ZpvqSBGtoLwLMr9h4/1y81k1qwp+gxXTv94pXyu:jHEG+ZTYpvxBGtwwmj8u1t5x+pH

Entry address:
0xACF234

Entry point:
B8, 6C, 43, 2E, 02, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 29, BA, 3D, 5B, 12, 9F, 60, FE, 2F, D2, 47, 70, 75, 3B, 6E, F9, 60, 05, EF, 4F, 2E, E5, 8A, 8F, 3B, 7F, 0B, 43, F8, CC, A8, 77, BB, 1F, 92, 0A, F0, 1C, 86, 76, EB, 2F, 46, D9, 74, 7D, 0C, BD, FE, B6, 30, B8, A7, 7F, FE, 5C, 1A, 3F, F3, 71, C1, EA, 88, A3, 95, F5, 26, 51, FC, 34, 0C, 49, 51, 7E, ED, E7, 33, 37, 9A, 3D, BC, 7C, 44, B3, 0C, 75, 48, 90, 1E, BE, 28, 82, BE...
 
[+]

Entropy:
7.9886

Packer / compiler:
PECompact v2

Code size:
10.8 MB (11,330,560 bytes)

Scan tcw.exe - Powered by Reason Core Security