jovial-notepad.exe

JovialNotepad

This is a setup program which is used to install the application. The file has been seen being downloaded from windows.indir.com.
Product:
JovialNotepad

Version:
1.0.0.0

MD5:
27b521fce74109907d2bc0373f158bc7

SHA-1:
00d87cd9715d2329ccc5e8b47390d24a7b7a82e7

SHA-256:
5ed79bab0a848e11da6ab1c0c0bc9e749ef24ba0f0e3ebc713cb952fafd6e6e0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 3:10:59 PM UTC  (today)

File size:
41 KB (41,984 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2013

Original file name:
JovialNotepad.exe

File type:
Executable application (Win32 EXE)

Language:
Turkish (Turkey)

Common path:
C:\users\{user}\downloads\jovial-notepad.exe

File PE Metadata
Compilation timestamp:
6/9/2013 4:40:12 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:NK/AaDUBtQFe6mysc8SmL77LRjYADDL9Kq2Z8wXJ94qlQK7bEUx6:YAaDUBKOc83nRjHUUGJ9N9jx6

Entry address:
0xB56E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
37.5 KB (38,400 bytes)

The file jovial-notepad.exe has been seen being distributed by the following URL.

Scan jovial-notepad.exe - Powered by Reason Core Security