easynoter.exe

ART PLUS D.O.O.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘D:_EASYNOTER4_EASYNOTER.EXE’.
Publisher:
Art Plus Marketing & Publishing  (signed by ART PLUS D.O.O.)

Description:
Art Plus EasyNoter PRO

Version:
4.2.1.790

MD5:
6bd7d5ed891f1d8f44fc1b97ff162c95

SHA-1:
7c3b3a75f01ceffc5191b8ac6e7d19eb33e5c1c1

SHA-256:
9f59a86bf48a30059b9fa81f19c929cff0714c41c0cd8b2a95e9f6e105931917

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 4:10:35 AM UTC  (today)

File size:
4.6 MB (4,788,384 bytes)

Product version:
4.2

Copyright:
Copyright © 1999-2014 Art Plus

Original file name:
easynoter.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/2/2013 2:00:00 AM

Valid to:
7/3/2014 1:59:59 AM

Subject:
CN=ART PLUS D.O.O., O=ART PLUS D.O.O., STREET=Kapelska 5, L=Zagreb, S=HR, PostalCode=10000, C=HR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
2BCA509825B5F06194A38AA1E879763D

File PE Metadata
Compilation timestamp:
3/20/2014 6:50:41 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:xkvXsupcN7JsFJsSQYQuNMdK2H9YLqlTQOrxSbhl93NsFCo1E20f5T0boTkQzKu7:6cupcN7SqdKUYLLOlSbhlpWFCouMuyON

Entry address:
0x3C0C48

Entry point:
55, 8B, EC, B9, 04, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, 56, B8, DC, FA, 7A, 00, E8, 30, CE, C4, FF, 8B, 1D, 14, EE, 7C, 00, 33, C0, 55, 68, 8F, 0F, 7C, 00, 64, FF, 30, 64, 89, 20, 8B, 03, E8, ED, F7, E0, FF, 8B, 03, C6, 40, 67, 00, 8B, 03, BA, AC, 0F, 7C, 00, E8, 8B, F1, E0, FF, 8D, 55, E4, 8B, 03, E8, FD, 00, E1, FF, 8B, 45, E4, 8D, 55, E8, E8, 66, AA, E1, FF, 8B, 45, E8, 8D, 55, EC, E8, 2B, 08, C6, FF, 8B, 45, EC, E8, A3, F5, E4, FF, 84, C0, 0F, 84, 74, 02, 00, 00, B8, F0, 0F, 7C, 00, E8, A1...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
3.7 MB (3,931,136 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
D:_EASYNOTER4_EASYNOTER.EXE

Command:
"C:\easynoter4\easynoter.exe" \a \a


Scan easynoter.exe - Powered by Reason Core Security