WT_Decompress.exe

WTDecompress

WebTrain.com Internet Communication Platforms Inc.

Publisher:
WebTrain.com  (signed by WebTrain.com Internet Communication Platforms Inc.)

Product:
WTDecompress

Version:
3.08.0001

MD5:
29a5f80b3756bda90e2d7b89f21edbda

SHA-1:
3640c1220b9935dd9ed121e7c69bce54819f2a0a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 8:21:29 AM UTC  (today)

File size:
81.5 KB (83,504 bytes)

Product version:
3.08.0001

Original file name:
WT_Decompress.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\Application data\programs\webtrain\wt_decompress.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
5/22/2008 7:00:00 PM

Valid to:
4/11/2009 6:59:59 PM

Subject:
CN=WebTrain.com Internet Communication Platforms Inc., OU=SECURE APPLICATION DEVELOPMENT, O=WebTrain.com Internet Communication Platforms Inc., L=Kelowna, S=British Columbia, C=CA

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
75BC0AA3EE00DBA08ADE137BE262F8EF

File PE Metadata
Compilation timestamp:
3/12/2009 11:39:30 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
4.20

CTPH (ssdeep):
1536:CMG63vRG8qO5jRoxPgxOGjoLhAknusZ9Ct4rEXxAYfn47:M6fRxqNxPiOGMniXx/ne

Entry address:
0x2390

Entry point:
68, 64, 25, 40, 00, E8, EE, FF, FF, FF, 00, 00, 68, 00, 00, 00, 30, 00, 00, 00, 60, 00, 00, 00, 40, 00, 00, 00, 4B, EE, 69, 6F, 75, 97, D7, 11, BF, 3B, 00, E0, 98, 76, DF, 26, 00, 00, 00, 00, 00, 00, 05, 00, 04, 00, 30, 30, 30, 2D, 43, 30, 57, 54, 44, 65, 63, 6F, 6D, 70, 72, 65, 73, 73, 00, 34, 36, 7D, 57, 65, 62, 54, 72, 61, 69, 6E, 20, 44, 65, 63, 6F, 6D, 70, 72, 65, 73, 73, 20, 6D, 6F, 64, 75, 6C, 65, 00, 5C, 2E, 2E, 5C, 2E, 00, 5C, 2E, 2E, 5C, 57, 69, 6E, 00, 00, 00, 00, A8, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.9161

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
58 KB (59,392 bytes)

Automation Object
CLSID:
{A7F7891C-3128-11D8-BF42-00E0987495A5}

CLSID name:
WTDecompress.clsDecompress


Scan WT_Decompress.exe - Powered by Reason Core Security