TINTSETP.EXE

新注音

Microsoft Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘PHIME2002ASync’.
Publisher:
Microsoft Corporation

Product:
新注音

Description:
微軟新注音輸入法 2002a

Version:
5.2.2801

MD5:
bf7910f41eb81ec174517f79440a7251

SHA-1:
80b7321fae159f4abfdeaa228c28aee4873558e6

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/1/2024 3:02:57 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Sality
160917-0

File size:
516.5 KB (528,896 bytes)

Product version:
5.2.2801

Copyright:
Copyright (C) Microsoft Corp. 1998-2000

Original file name:
TINTSETP.EXE

File type:
Executable application (Win32 EXE)

Language:
Chinese (Taiwan)

Common path:
C:\Windows\System32\ime\tintlgnt\tintsetp.exe

File PE Metadata
Compilation timestamp:
4/4/2002 9:54:52 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.1

Entry address:
0x31FC

Entry point:
F6, C6, 1B, FE, C9, BF, 43, DA, 2D, FC, 4A, 88, DC, 0F, AF, C5, 86, DD, FE, CA, 77, 06, 8D, 0D, 7C, F2, 51, 23, 0F, B7, C2, F2, 02, E4, 84, DE, 69, C1, CD, 9C, 4C, C2, 50, 81, FF, 05, 83, 00, 00, 74, 0A, 85, C2, 69, C6, 7C, 96, 45, AE, B3, EF, 59, 84, D8, 2D, 37, 87, 11, 4A, 69, FB, 19, 68, E1, 71, 89, C7, 8D, 29, B7, 82, 02, C1, C7, C7, A5, 4B, D3, 02, FE, C9, 88, F3, 2B, D2, C7, C1, 3E, DF, D9, 8A, 80, E5, 72, 0B, D5, 85, FA, 2A, DA, B4, 21, 03, F2, C7, C7, 14, 9B, 8B, 1A, FF, C0, 0F, BE, C9, FE, C6, 0F...
 
[+]

Entropy:
1.9698

Code size:
11 KB (11,264 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
PHIME2002ASync

Command:
C:\Windows\System32\ime\tintlgnt\tintsetp.exe \sync


Scan TINTSETP.EXE - Powered by Reason Core Security