ColdTurkeyRemoval.exe

Cold Turkey Removal

Product:
Cold Turkey Removal

Version:
1.0.0.0

MD5:
5acfaa25cdfff4ccdcba0714a189d2af

SHA-1:
70215b378962d560f11807cf01d03a9ecf74adfb

SHA-256:
4720b9dd99d7437989705e44a4eaf01961d7c04796bdba716e7d11ac95badd7f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 9:51:45 PM UTC  (today)

File size:
25.5 KB (26,112 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Felix Belzile 2012

Original file name:
ColdTurkeyRemoval.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\coldturkeyremoval.exe

File PE Metadata
Compilation timestamp:
12/16/2012 8:39:15 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:fL2+/wdh3yyOvarckahPv7EiJLLf45dj+Qffr8aRaq8kCzYcHe+m:ftc3yyOirKpBPajZCRzYcHe+m

Entry address:
0x6A5E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.3045

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
19 KB (19,456 bytes)

The file ColdTurkeyRemoval.exe has been seen being distributed by the following URL.

Scan ColdTurkeyRemoval.exe - Powered by Reason Core Security