AutoLogon.exe

AutoLogon

CodeTwo

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘CodeTwoAutoLogon’.
Publisher:
CodeTwo  (signed and verified)

Product:
AutoLogon

Version:
2,0,0,6

MD5:
3f9ec04ceddf877ddd6a3783ee875884

SHA-1:
98b9bf439a071f02b0a63865725d0712121efabc

SHA-256:
cfaf18eef8a222d1d89f2876cb8753e6e004aa585d36c7b841abaab871ba020e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/29/2024 1:43:01 AM UTC  (today)

File size:
1.8 MB (1,937,608 bytes)

Product version:
2,0,0,6

Copyright:
(c) 2008 CodeTwo s.c.

Original file name:
AutoLogon.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\codetwo\codetwo autologon\autologon.exe

Digital Signature
Signed by:

Authority:
Unizeto Technologies S.A.

Valid from:
11/29/2010 6:04:17 AM

Valid to:
11/30/2011 6:04:17 AM

Subject:
E=info@codetwo.com, CN=CodeTwo, OU=CodeTwo, O=CodeTwo, C=PL

Issuer:
CN=Certum Level III CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
072494

File PE Metadata
Compilation timestamp:
2/25/2011 8:19:24 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x10ADF3

Entry point:
E8, 09, A4, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 66, 8B, 08, 40, 40, 66, 85, C9, 75, F6, 2B, 45, 08, D1, F8, 48, 5D, C3, 8B, FF, 55, 8B, EC, 51, 53, 8B, 45, 0C, 83, C0, 0C, 89, 45, FC, 64, 8B, 1D, 00, 00, 00, 00, 8B, 03, 64, A3, 00, 00, 00, 00, 8B, 45, 08, 8B, 5D, 0C, 8B, 6D, FC, 8B, 63, FC, FF, E0, 5B, C9, C2, 08, 00, 58, 59, 87, 04, 24, FF, E0, 8B, FF, 55, 8B, EC, 51, 51, 53, 56, 57, 64, 8B, 35, 00, 00, 00, 00, 89, 75, FC, C7, 45, F8, 7B, AE, 50, 00, 6A, 00, FF, 75, 0C, FF, 75, F8...
 
[+]

Entropy:
6.4911

Code size:
1.2 MB (1,263,616 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
CodeTwoAutoLogon

Command:
C:\Program Files\codetwo\codetwo autologon\autologon.exe \hidden


Scan AutoLogon.exe - Powered by Reason Core Security