WiTopia.exe

WiTopia Client

SparkLabs Pty Ltd

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘WiTopia’.
Publisher:
SparkLabs  (signed by SparkLabs Pty Ltd)

Product:
WiTopia Client

Description:
WiTopia

Version:
2.3.8.241

MD5:
4d9d25a8cea9b58f9e747ced0781427d

SHA-1:
aad2f09a6a19099cd891dbfe96baf5d47d63a991

SHA-256:
6859caf1db67325c596ec11b16b8f41f91839ab898c8420baa4e98fd8cad95cd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/30/2024 9:45:43 AM UTC  (today)

File size:
860.2 KB (880,840 bytes)

Product version:
2.3.8 (241)

Copyright:
© 2016 SparkLabs Pty Ltd

Original file name:
WiTopia.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\witopia\witopia.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
10/17/2015 3:30:00 AM

Valid to:
10/13/2016 3:30:00 PM

Subject:
CN=SparkLabs Pty Ltd, O=SparkLabs Pty Ltd, L=Bathurst, S=New South Wales, C=AU, PostalCode=2795, STREET=35 Robindale Court, SERIALNUMBER=154 607 682, OID.1.3.6.1.4.1.311.60.2.1.3=AU, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0C8ADA66EF7634AFAB80E92562F923D6

File PE Metadata
Compilation timestamp:
7/13/2016 7:13:13 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:ZSxQQHVz/Hhbbsuk7awgl3Ogo33o+zZDnU5rMg7WVr5q0sXNMbxrW6DAYa+N/Y6y:gz6u5X0sPuW6jfJch2Y1jrWyd

Entry address:
0xCC1D6

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, C0, 0C, 00, 0C, 00, 00, 00, D8, 31, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.1555

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
808.5 KB (827,904 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
WiTopia

Command:
C:\Program Files\witopia\witopia.exe


Scan WiTopia.exe - Powered by Reason Core Security