TRJSCAN.EXE

Trojan Scanner

Simply Super Software

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘TrojanScanner’.
Publisher:
Simply Super Software  (signed and verified)

Product:
Trojan Scanner

Version:
6.9.5.1349

MD5:
e1b6bd30e5dad16954d0b7ed3a90feda

SHA-1:
0f9a1fa2baf888e2799f6908d160bb50ad7becee

SHA-256:
0007e6f72479c8af3d80412c146d52555a12f9c6b2dcb279625a516771150900

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/27/2024 2:29:03 PM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/Patched.Y.gen
4.6.5.141

File size:
3.5 MB (3,627,576 bytes)

Product version:
6.9

Copyright:
© 1999-2017 Simply Super Software

Original file name:
TRJSCAN.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\trojan remover\trjscan.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
9/19/2014 5:00:00 PM

Valid to:
9/19/2017 4:59:59 PM

Subject:
CN=Simply Super Software, O=Simply Super Software, STREET=19 Coxs Close, L=Nuneaton, S=Warwickshire, PostalCode=CV10 7ET, C=GB

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CBAD5686CE0AD9D18A9CEC26F3AE8696

File PE Metadata
Compilation timestamp:
1/10/2017 12:50:35 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x29DA34

Entry point:
CC, C3, CC, C3, CC, C3, CC, C3, B8, 70, 93, 69, 00, E8, 36, A8, D6, FF, 8B, 35, 40, 38, 6A, 00, B8, 0C, DB, 69, 00, E8, C2, B8, FF, FF, 84, C0, 74, 1A, 6A, 00, 6A, 00, B9, 01, 80, 00, 00, 33, D2, B8, 3C, DB, 69, 00, E8, 3D, B8, FF, FF, E9, 87, 00, 00, 00, 6A, 01, E8, 75, AE, D6, FF, 83, C8, 01, 50, E8, 6C, AE, D6, FF, 8B, 06, E8, 4D, 0E, DE, FF, E8, 70, AD, D6, FF, 50, E8, 7A, AE, D6, FF, E8, 41, 44, D7, FF, 8B, 06, B2, 01, E8, 3C, 2D, DE, FF, 8B, 06, C6, 80, D4, 00, 00, 00, 01, 8B, 06, BA, 60, DB, 69, 00...
 
[+]

Entropy:
6.6276

Code size:
2.6 MB (2,738,688 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
TrojanScanner

Command:
C:\Program Files\trojan remover\trjscan.exe \boot


Scan TRJSCAN.EXE - Powered by Reason Core Security