activexclock64.exe

ActiveX Clock

David Jorge Aguirre-Grazio

Publisher:
Mc & RENOX technologies - www.mcrenox.com.ar  (signed by David Jorge Aguirre-Grazio)

Product:
ActiveX Clock

Description:
ActiveX Clock (64bit)

Version:
1.8.0.0

MD5:
dca2e79e1c46f97511c3fe4296383815

SHA-1:
6c8838cfdb6c6d17087d3b0c36fc661352625d62

SHA-256:
fbd190bcdd7e3d5c8dfdbd51d85b2b82a7f5f62cf48cabb10712e45a25500b77

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 10:17:20 PM UTC  (today)

File size:
7.2 MB (7,568,224 bytes)

Product version:
1.8.0.0

Copyright:
Copyright © 2010-2014 by Mc & RENOX

Trademarks:
Mc & RENOX technologies - www.mcrenox.com.ar

Original file name:
ActiveXClock.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\activexclock64.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
5/25/2013 7:00:00 PM

Valid to:
8/15/2014 7:00:00 AM

Subject:
CN=David Jorge Aguirre-Grazio, O=David Jorge Aguirre-Grazio, L=San Miguel de Tucuman, S=Tucumán, C=AR

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0632BCD9033912D166140175CC90E8F2

File PE Metadata
Compilation timestamp:
10/12/2013 7:38:12 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:cAadE97Z7F9bTcHXI+SLFu/l1i83sjwj3E3FWYUJsayjLq9ASHqMCnBq4z1NrjOh:jYhNJT6lr1jen8i

Entry address:
0x2D6890

Entry point:
55, 48, 83, EC, 20, 48, 8B, EC, 90, 48, 8D, 0D, 68, 38, FF, FF, E8, 2B, EB, D3, FF, 48, 33, C9, 83, CA, FF, 4C, 8D, 05, DE, 00, 00, 00, E8, B9, 38, D4, FF, 48, 89, 05, D2, 82, 04, 00, 48, 83, 3D, CA, 82, 04, 00, 00, 75, 11, 48, 8D, 0D, F9, 00, 00, 00, E8, 9C, 8F, F3, FF, E8, 77, 6F, D3, FF, E8, 82, 3A, D4, FF, 81, F8, B7, 00, 00, 00, 75, 11, 48, 8D, 0D, 23, 01, 00, 00, E8, 7E, 8F, F3, FF, E8, 59, 6F, D3, FF, 48, 8B, 05, AA, E0, 03, 00, 48, 8B, 08, E8, DA, E6, FC, FF, 48, 8B, 05, 9B, E0, 03, 00, 48, 8B, 08...
 
[+]

Entropy:
6.0098

Code size:
2.8 MB (2,972,672 bytes)

The file activexclock64.exe has been seen being distributed by the following URL.

Scan activexclock64.exe - Powered by Reason Core Security