WomanCalendar.exe

Advanced Woman Calendar

SoftOrbits

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Advanced Woman Calendar’.
Publisher:
SoftOrbits  (signed and verified)

Product:
Advanced Woman Calendar

Version:
3, 2, 0, 0

MD5:
dc76e41c7ccb6583165e7b8a4e0607bb

SHA-1:
2248b33356d5f2d0e98d556d933abee5fefab416

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/25/2024 10:43:09 PM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
PUA.Packed.ASPack
0.98/18011

Comodo Security
Heur.Suspicious
8305

File size:
2 MB (2,135,872 bytes)

Product version:
3, 2, 0, 0

Copyright:
Copyright (C) 2011

Original file name:
WomanCalendar.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/13/2011 7:00:00 AM

Valid to:
1/16/2012 6:59:59 AM

Subject:
CN=SoftOrbits, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SoftOrbits, L=Smolensk, S=Smolenskaya, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
50391746C878885C965A967436E5649B

File PE Metadata
Compilation timestamp:
2/1/2011 10:13:28 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:QjYT2mzzJ/IbpbFNFFFF+4DYuU7Qu2qVEY+xd:7qmzzJQblFNFFFF+uYuAQu24gd

Entry address:
0x1000

Entry point:
68, 01, 90, 65, 00, E8, 01, 00, 00, 00, C3, C3, 3C, 07, B8, 53, 59, 4D, 63, 30, 1D, 19, F3, E3, A6, A3, 15, 5E, B1, 8B, 25, EC, 5B, 16, FF, C4, E1, 26, 7A, 7B, C7, 4A, 6C, 2D, 90, 88, ED, CA, D0, A4, 0F, BE, 75, 2A, 55, C8, A3, 44, C7, 05, 7A, B0, ED, 23, C8, 1D, 54, 17, 36, A9, 87, E5, AD, 06, 92, 3B, 09, D6, 9D, 71, F3, 24, 3F, 52, 85, 97, 7F, 7B, E3, 3F, FB, C4, 09, AB, C9, 68, CF, 2E, BA, 65, A1, AE, 09, B7, CB, 76, 29, 0C, C8, 00, AB, D4, 7A, 73, 52, 4E, 13, 51, F6, E7, 15, 14, 6C, A0, 85, 7B, 91, 62...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
552 KB (565,248 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Advanced Woman Calendar

Command:
"C:\advanced woman calendar\womancalendar.exe" -m


Scan WomanCalendar.exe - Powered by Reason Core Security