update.exe

Link Data Security A/S

Publisher:
Link Data Security A/S  (signed and verified)

MD5:
fdc20069edff8d2b619170ab0e57c8aa

SHA-1:
c91fef2c21922aa7ec5482a5bc109e81c4074eea

SHA-256:
66a17a90d74a0e069f408f734bdb10bcf702833dd4e0f80007b12672c43f233a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 5:48:54 AM UTC  (today)

File size:
5.4 MB (5,666,832 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\update.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
4/14/2008 4:51:31 PM

Valid to:
4/14/2010 4:51:31 PM

Subject:
CN=Link Data Security A/S, OU=Secure Application Development, O=Link Data Security A/S, L=Copenhagen, S=Copenhagen, C=DK

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
113C0EB86CB9137624A4C4DEF8095435

File PE Metadata
Compilation timestamp:
11/13/2008 9:49:16 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
98304:09go4q8BydzBg18kuwx3vFmBUZQrslohb2LVEN0Znk67iCNPIQ:OYZBydiuwxl0Db6VEWNkOiCSQ

Entry address:
0x1652

Entry point:
6A, 00, E8, 07, 02, 00, 00, A3, 90, 30, 40, 00, E8, EB, 01, 00, 00, A3, 94, 30, 40, 00, 68, F0, 30, 40, 00, 6A, 01, FF, 35, 94, 30, 40, 00, E8, 33, FC, FF, FF, 85, C0, 75, 15, 54, 68, 03, 30, 40, 00, 68, F8, 32, 40, 00, E8, 24, FA, FF, FF, E9, 3D, 01, 00, 00, 68, 88, 13, 00, 00, 68, F0, 30, 40, 00, E8, 48, 01, 00, 00, 73, 1D, 68, F0, 30, 40, 00, 54, 68, 20, 30, 40, 00, 68, F8, 32, 40, 00, E8, F9, F9, FF, FF, 83, C4, 04, E9, 0F, 01, 00, 00, 68, F0, 30, 40, 00, E8, 36, FD, FF, FF, 2D, F0, 30, 40, 00, 50, 68...
 
[+]

Packer / compiler:
TASM / MASM

Code size:
2.5 KB (2,560 bytes)

Scan update.exe - Powered by Reason Core Security