TFormer.exe

TFORMer

TEC-IT Datenverarbeitung GmbH

Publisher:
TEC-IT Datenverarbeitung GmbH (www.tec-it.com) Hans-Wagnerstr. 6, A-4400 Steyr, AUSTRIA e: office@tec-it.com p: +43 (7252) 72720 f: +43 (7252) 727  (signed by TEC-IT Datenverarbeitung GmbH)

Product:
TFORMer

Version:
7.5.4.19564 SDK

MD5:
f954ac3ca378cc459702b82bd8a10c9e

SHA-1:
8e44cd743d32e0a31d5dd1a35443bd5f021d1f1b

SHA-256:
29d5478eb634fca16c6a2dea064b203c67596c1965676badf33d112f8bd1a467

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 8:52:01 PM UTC  (today)

File size:
6.9 MB (7,244,824 bytes)

Product version:
7.5.4

Copyright:
Copyright © TEC-IT Datenverarbeitung GmbH (www.tec-it.com) 1998-2013

Original file name:
TFormer.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\tformer.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
2/10/2013 4:00:00 PM

Valid to:
5/7/2015 4:59:59 PM

Subject:
CN=TEC-IT Datenverarbeitung GmbH, O=TEC-IT Datenverarbeitung GmbH, L=Steyr, S=Oberoesterreich, C=AT

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7320A1B664BFA8D5A9232D67F3F65A45

File PE Metadata
Compilation timestamp:
10/30/2013 3:30:33 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:bcjiklGukjLcBEVRbzPzMLejMpiWNiXyS9T:6nlNkjLOcvu4v9T

Entry address:
0x2B553A

Entry point:
E8, E5, 08, 00, 00, E9, 6B, FD, FF, FF, FF, 25, B4, 15, 78, 00, 3B, 0D, 10, 0B, 85, 00, 75, 02, F3, C3, E9, 66, 09, 00, 00, 8B, FF, 55, 8B, EC, F6, 45, 08, 02, 57, 8B, F9, 74, 25, 56, 68, 0C, 60, 6B, 00, 8D, 77, FC, FF, 36, 6A, 0C, 57, E8, 5F, 01, 00, 00, F6, 45, 08, 01, 74, 07, 56, E8, 8C, C4, FF, FF, 59, 8B, C6, 5E, EB, 14, E8, 7B, 0A, 00, 00, F6, 45, 08, 01, 74, 07, 57, E8, 75, C4, FF, FF, 59, 8B, C7, 5F, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, FF, 75, 14, FF, 75, 10, FF, 75, 0C, FF, 75, 08, 68, 4A, 55, 6B...
 
[+]

Entropy:
6.8122

Code size:
3.5 MB (3,670,016 bytes)

Scan TFormer.exe - Powered by Reason Core Security