textpaster.exe

Text Paster

ATNSOFT

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘ATNSOFT Text Paster’.
Publisher:
ATNSOFT  (signed and verified)

Product:
Text Paster

Version:
1.8.0.160

MD5:
4932cad017b86c1c5381d0e672d77b98

SHA-1:
cd495d60dd1117fecb47ed5b761865310b6226d8

SHA-256:
a8f751fa7cdb33685034ef9e09f0aa9c129f9c3dba090497bad022875b81d8d6

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/26/2024 8:07:26 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.Packed
1.3.0.6979

File size:
2.1 MB (2,223,352 bytes)

Product version:
1.8.0.160

Copyright:
Copyright © 2009-2015 ATNSOFT. All rights reserved.

Original file name:
textpaster.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\atnsoft text paster\textpaster.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/2/2013 12:00:00 AM

Valid to:
12/1/2016 11:59:59 PM

Subject:
CN=ATNSOFT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=ATNSOFT, L=Lipetsk, S=Russia, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7586760122385888546CB1A4905819B2

File PE Metadata
Compilation timestamp:
1/27/2014 11:47:51 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:V2K2yNEg6fQc5fDNdhCs5szZCeYxDNyepGXyDhXAWkXF7siwzBBGo8u3ns9OGapV:VQyNEg6fQibNdh/O0NV3Q17VinSgDVNJ

Entry address:
0x4E81C7

Entry point:
E8, 3B, FF, FF, FF, 05, 59, AA, 00, 00, FF, E0, E8, 2F, FF, FF, FF, 05, 4F, 52, 00, 00, FF, E0, E8, 04, 00, 00, 00, FF, FF, FF, FF, 5E, C3, 00, 19, 90, E5, DF, 0A, 8C, 02, 94, 9D, FE, B5, F0, 5D, 9F, 50, E2, 94, C9, 60, 08, 67, FE, 99, 53, 58, 8B, CC, BB, 99, C2, B0, 3D, 7D, A8, EB, 12, AB, D8, 61, 59, 15, 0E, C0, 57, 63, 54, 01, A8, 73, 5A, 92, 02, A4, AE, 9D, 08, 1F, 47, CE, 0A, A3, C1, A1, 23, A1, 8E, C9, 42, B6, D9, CE, 66, 41, FC, E4, CA, 24, 3B, 0C, 4D, CE, 95, 22, 36, F0, 40, 66, 74, 9F, AB, D8, 3E...
 
[+]

Entropy:
7.0925

Code size:
1.3 MB (1,368,576 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ATNSOFT Text Paster

Command:
C:\Program Files\atnsoft text paster\textpaster.exe \startup


Scan textpaster.exe - Powered by Reason Core Security