thes2011.exe

Thesaurus Payroll Manager

Thesaurus Software Ltd

It runs as a scheduled task under the Windows Task Scheduler.
Publisher:
Thesaurus Software Ltd.  (signed by Thesaurus Software Ltd)

Product:
Thesaurus Payroll Manager

Version:
2011.04.0010

MD5:
2386d4bab97a17fd9e1fc7d1541fba6e

SHA-1:
b4f30e40e98fb962d29cfeb0ce48609ae3882216

SHA-256:
d5758a759f26d3d2e5e9936ffd863957027b7663ce75c1c9808847577db842f8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/29/2024 11:32:16 AM UTC  (today)

File size:
9 MB (9,407,216 bytes)

Product version:
2011.04.0010

Copyright:
(C) Thesaurus Software Ltd.

Original file name:
thes2011.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/30/2011 1:00:00 AM

Valid to:
8/30/2013 12:59:59 AM

Subject:
CN=Thesaurus Software Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Thesaurus Software Ltd, L=Ashbourne, S=Meath, C=IE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
74E6F5921595FC33FBACB48C2129F9F9

File PE Metadata
Compilation timestamp:
1/25/2012 3:43:28 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
4.0

CTPH (ssdeep):
196608:1QAtF3GmaDWi8ADvLvZYY6O9s46oCk2Je/wSixOnx:XvO9s46ov2Je/wJOx

Entry address:
0x11A0

Entry point:
68, 00, EB, 4B, 00, E8, EE, FF, FF, FF, 00, 00, CC, A8, 4B, 00, 5C, A9, 4B, 00, 1C, A9, 4B, 00, 3C, A9, 4B, 00, 03, 00, 00, 00, B2, 16, 89, E9, DA, 45, 1B, 10, B1, 76, 08, 00, 2B, 33, 6F, 60, 3B, 00, 03, 00, 10, 00, 00, 00, 3C, 34, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 38, 76, 84, 00, 03, 00, 00, 00, B2, 16, 89, E9, DA, 45, 1B, 10, B1, 76, 08, 00, 2B, 33, 6F, 60, D0, 00, 03, 00, 10, 00, 00, 00, EC, 35, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 03, 00, 00, 00...
 
[+]

Entropy:
5.8077

Code size:
8.7 MB (9,138,176 bytes)

Scheduled Task
Task name:
{1FD9C8A9-C8D8-49F3-9E1B-957E4309D73D}

Trigger:
Registration (Runs on registration)


Scan thes2011.exe - Powered by Reason Core Security