WebSights.exe

WebSights

Wakoopa

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘WebSights’.
Publisher:
Wakoopa  (signed and verified)

Product:
WebSights

Version:
1.9.9.2

MD5:
c081761e81730124e6d3da775564a315

SHA-1:
569b704789a7db74a21afeb3446552ba2ae1d877

SHA-256:
ef432c51435343b78769ad5b1a74579006f8630ffb6b324f01dd1e3f93057858

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/28/2024 6:31:50 PM UTC  (today)

File size:
1.2 MB (1,228,272 bytes)

Product version:
1.9.9.2

Copyright:
(c) Wakoopa B.V.

Original file name:
WebSights.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\websights\websights.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
6/17/2014 3:17:46 AM

Valid to:
6/17/2017 3:17:46 AM

Subject:
E=support@wakoopa.com, CN=Wakoopa, OU=IT, O=Wakoopa, L=Amsterdam, S=Noord-Holland, C=NL

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11216D1EB6B634BA03AA195E6768EC41A0D6

File PE Metadata
Compilation timestamp:
3/14/2017 2:53:22 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0x66528

Entry point:
E8, 0F, 0C, 00, 00, E9, 80, FE, FF, FF, 3B, 0D, 44, C5, 4B, 00, F2, 75, 02, F2, C3, F2, E9, BF, 07, 00, 00, 55, 8B, EC, F6, 45, 08, 01, 56, 8B, F1, C7, 06, 08, AE, 49, 00, 74, 0A, 6A, 0C, 56, E8, 09, 00, 00, 00, 59, 59, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, FF, 75, 08, E8, 6F, CB, FD, FF, 59, 5D, C3, 53, 56, 57, 6A, 00, 68, A0, 0F, 00, 00, 68, 94, 15, 4C, 00, E8, 93, 67, 00, 00, 83, C4, 0C, 68, 8C, 4A, 4A, 00, FF, 15, 0C, 62, 49, 00, 8B, F0, 85, F6, 0F, 84, 8C, 00, 00, 00, 68, 0C, AE, 49, 00, 56, FF, 15...
 
[+]

Entropy:
6.6062

Code size:
596 KB (610,304 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
WebSights

Command:
C:\users\{user}\appdata\local\websights\websights.exe


Scan WebSights.exe - Powered by Reason Core Security