zwp64.exe

Pasting

Bitsum Technologies

Publisher:
DT Soft Ltd  (signed by Bitsum Technologies)

Product:
Pasting

Version:
1.04.0003

MD5:
79658310a6c1d24ffa27d4611ad51e0f

SHA-1:
5dae4ccc9b0e1f8f73bd03f437d3066d66f4b5f3

SHA-256:
792440ec8646c4f7e0744064ee161b0fbc73b259af0d2178cf0420c535be24c2

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/25/2024 11:27:53 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Sophos
Mal/VB-ALO
4.98

File size:
910 KB (931,857 bytes)

Product version:
1.04.0003

Original file name:
Satyrism.exe

File type:
Executable application (Win32 EXE)

Language:
Noruego, Bokmål (Noruega)

Common path:
C:\users\{user}\appdata\local\temp\zwp64.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
9/30/2009 7:00:00 PM

Valid to:
10/1/2010 6:59:59 PM

Subject:
CN=Bitsum Technologies, O=Bitsum Technologies, STREET=1605 Allen Rd., L=Talbott, S=TN, PostalCode=37877, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00FC594B2E2C30E2B41F4CA24B350BCA89

File PE Metadata
Compilation timestamp:
5/15/2014 9:37:56 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:vEQpae5hUwQfqg0PCw7D6RrqocoTwvEo7NtdRa0tziI/hpnvZeladSZkX5P:MQN5q36a0+5qocoTQ9dRaMiavQzcP

Entry address:
0x13D8

Entry point:
68, C8, 14, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, 9F, CB, 24, D5, C6, 23, AA, 48, B0, C3, 6D, EA, 10, A2, 29, 5B, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 42, 72, 65, 62, 61, 00, 00, 00, 00, 00, 00, 00, FF, CC, 31, 00, 00, D7, BB, 08, 63, 50, 6B, 6E, 45, 87, BE, 50, 9E, A0, 84, 27, 51, 85, 36, DD, 2D, 8F, E3, 50, 4A, B1, 4B, 32, BB, F8, A3, 85, E3, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00, AA, 00, 60, D3, 93, 00, 00, 00...
 
[+]

Entropy:
6.5214

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
204 KB (208,896 bytes)

Scan zwp64.exe - Powered by Reason Core Security