totalcmd.exe

Total Commander

Ghisler Software GmbH

Publisher:
Ghisler Software GmbH  (signed and verified)

Product:
Total Commander

Description:
Total Commander 32 bit

Version:
7.56a

MD5:
4b272d6f835ecba257f220f03850ca0e

SHA-1:
167a13f195db4a0f43ce8c1accdd43f96d05f91d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 4:54:40 AM UTC  (today)

File size:
3.7 MB (3,885,528 bytes)

Product version:
7.56a

Copyright:
Copyright © 1993-2010 Christian Ghisler

Original file name:
totalcmd.exe

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\Documents and Settings\{user}\Local settings\temp\{random}.tmp\totalcmd\totalcmd.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/11/2010 2:00:00 AM

Valid to:
5/12/2011 1:59:59 AM

Subject:
CN=Ghisler Software GmbH, OU=Development, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Ghisler Software GmbH, L=Bolligen, S=Bern, C=CH

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
56CBFDB3B225D4FD03C76C8EB78F3685

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:ojfGNupDtN3YQ+389gO2okZJBRtINVAVbk7iLhG:oCQpDtN3YQ+389gO2ok5RtIbAVXhG

Entry address:
0x3F6000

Entry point:
90, 90, BB, 93, D1, 14, 00, 68, 1E, 60, 7F, 00, 5A, 90, BE, 98, 05, 00, 00, 90, 31, 1C, 32, 90, 83, EE, 03, 4E, 90, 75, F5, 90, 90, 90, 7B, AC, 15, 00, 93, D1, 14, 00, 93, D1, 54, 00, 77, 9E, 38, 00, 33, 42, 2C, 00, 4B, 48, 2C, 00, 93, 61, 16, 00, 6C, 2E, EB, FF, 37, B0, 67, 00, 9F, BC, 67, 00, B7, BC, 67, 00, 93, D1, 14, 00, 93, D1, 14, 00, 93, D1, 14, 00, 37, 6C, 38, 00, 99, BC, 27, 00, B1, BC, 27, 00, 93, D1, 14, 00, 93, D1, 14, 00, 93, D1, 14, 00, 93, D1, 14, 00, B3, B3, 67, 00, 93, D1, 14, 00, 93, D1...
 
[+]

Code size:
2.8 MB (2,901,504 bytes)

Scan totalcmd.exe - Powered by Reason Core Security