trans.exe

Trans Instant Messenger

Logintrans Sp. z o.o.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Trans’.
Publisher:
Rising Sun Technologies  (signed by Logintrans Sp. z o.o.)

Product:
Trans Instant Messenger

Version:
4.2.0.3981

MD5:
7fc6839c2adb9ed8652ed854f8579741

SHA-1:
b2e695f688c002d37b79164b31d430e5978c90cd

SHA-256:
15575e0af029654a526bd570a7116a00fbf65c17bcd2e93ea7df78dd8a67020a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/16/2025 11:06:47 AM UTC  (today)

File size:
4.5 MB (4,698,144 bytes)

Product version:
4.2.0.3981

Copyright:
(c) 2012 by RST

Original file name:
trans.exe

File type:
Executable application (Win32 EXE)

Language:
lengyel (Lengyelország)

Common path:
C:\Program Files\trans\trans.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
7/16/2012 2:00:00 AM

Valid to:
7/17/2014 1:59:59 AM

Subject:
CN=Logintrans Sp. z o.o., OU=DEPARTAMENT IT, O=Logintrans Sp. z o.o., L=Wroclaw, S=Dolnoslaskie, C=PL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
34237A412068EDE12EF74932ED545A66

File PE Metadata
Compilation timestamp:
1/23/2013 11:18:31 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
98304:ElbIPAjrghms9y4uuOngNETTKNiyA49oXgiC:cMAjrIblkUm01

Entry address:
0x112CC86

Entry point:
E8, F7, FE, FF, FF, 05, A4, 09, 00, 00, FF, E0, E8, EB, FE, FF, FF, 05, D0, 2B, 00, 00, FF, E0, E8, F6, 00, 00, 00, 6F, 9A, 52, 01, 13, 1D, 1E, 94, 48, 14, 14, 64, 18, 34, 77, 0A, 42, 37, 1C, 08, 3E, 15, 08, 0C, 20, 0B, 27, 06, 5A, 0E, 08, 3B, 24, 08, 56, 36, 0F, 15, 0F, 59, A4, 32, 43, 4D, 31, 5A, B8, 44, 0E, 12, 25, 5B, 32, 0E, 3E, 1F, 34, 22, 68, 71, 09, 2B, 07, 32, 0A, 19, 07, 34, 02, 34, 13, 2C, 12, 0B, 32, 2A, 29, 26, 12, 3E, 0C, 93, 10, 81, 0C, 35, 50, 0F, 3A, 60, 1F, 0B, 34, 10, 2B, 26, 0D, 07, 0B...
 
[+]

Packer / compiler:
EXECryptor 2.2.4

Code size:
5.6 MB (5,840,896 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Trans

Command:
C:\Program Files\trans\trans.exe


Scan trans.exe - Powered by Reason Core Security