WindowexeAllkiller.exe

WindowexeAllkiller

jinmo kim

Publisher:
http://windowexeallkiller.com  (signed by jinmo kim)

Product:
WindowexeAllkiller

Version:
1.0.6034.27405

MD5:
15ce94985d3afffd9be14fb4d25f1331

SHA-1:
8e51b709db62afd13c8e752594ccc3e5460e049c

SHA-256:
0cb4a279580ba2688bad37ab4bda229db8a20a077b5d6c8b705b8893e724495a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/28/2024 1:56:30 AM UTC  (today)

File size:
424.7 KB (434,896 bytes)

Product version:
1.0.6034.27405

Copyright:
Copyright © WindowexeAllkiller.com

Original file name:
WindowexeAllkiller.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\windowexeallkiller.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
8/2/2014 9:00:00 PM

Valid to:
11/1/2016 9:59:59 PM

Subject:
CN=jinmo kim, OU=Individual Developer, O=No Organization Affiliation, L=Cheonan-si, S=Cheonan-si, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
4067B6E8D9D9B12E5C581AEC4251BB37

File PE Metadata
Compilation timestamp:
7/9/2016 3:13:32 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:Con07A2XUytLVgQv5ywrEjaVD/Rl0nY58X+f9dp49uYfq8F:5MXOKS45l0fuCxF

Entry address:
0x6122E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
381 KB (390,144 bytes)

Scan WindowexeAllkiller.exe - Powered by Reason Core Security