pCloud.exe

pCloud Drive

pCloud LTD

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘pCloud’.
Publisher:
pCloud LTD  (signed and verified)

Product:
pCloud Drive

Version:
3.1.0.0

MD5:
5531e9eb152eed331f81d91d3e52aaa5

SHA-1:
ddcaa3320d16300c249e1e3a85101786fbe1490c

SHA-256:
c8fdde2b3c8ef8619ca841b6e44597428c0f607fa4dd60556c07cfb7b9bd1647

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 12:05:43 AM UTC  (today)

File size:
1.7 MB (1,765,680 bytes)

Product version:
3.1.0.0

Copyright:
Copyright © 2014

Original file name:
pCloud.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\pcloud drive\pcloud.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
10/5/2014 8:00:00 PM

Valid to:
10/6/2015 7:59:59 PM

Subject:
CN=pCloud LTD, O=pCloud LTD, STREET=17 Acad. Boris Stefanov str, STREET="STUDENTSKI GRAD DISTR., AP. OFI,", L=Sofia, S=Sofia, PostalCode=1000, C=BG

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00FEFC995F6802EF74C362F4E3B7D701B8

File PE Metadata
Compilation timestamp:
5/20/2015 8:34:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:W/dDaK7mq6KCQEz/7IXthfveisj06y/izEf83:gaK7UKxGMfZ/izv

Entry address:
0x1AE9CE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 10, 00, 00, 00, 18, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 01, 00, 00, 00, 30, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 48, 00, 00, 00, 58, 00, 1B, 00, F0, 02...
 
[+]

Entropy:
6.3674

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
1.7 MB (1,755,648 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
pCloud

Command:
C:\Program Files\pcloud drive\pcloud.exe


Scan pCloud.exe - Powered by Reason Core Security