Phasing Utility.exe

Phasing Utility

Felix CHANDRAKUMAR

Publisher:
Felix CHANDRAKUMAR  (signed and verified)

Product:
Phasing Utility

Version:
1.5

MD5:
cb802029e6ce69c979ff3ac79802955c

SHA-1:
7a337314bb09e2538528f158832a32803af0e99b

SHA-256:
f161e3d8058131e8a09c5f9947caabb34c310aa51830295469aade40bfe95d01

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 8:03:56 AM UTC  (today)

File size:
49 KB (50,192 bytes)

Product version:
1.5

Copyright:
Copyright © Felix Chandrakumar 2014

Original file name:
Phasing Utility.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\phasing utility.exe

Digital Signature
Authority:
Unizeto Technologies S.A.

Valid from:
8/26/2014 11:48:45 PM

Valid to:
8/26/2015 11:48:45 PM

Subject:
E=i@fc.id.au, CN="Open Source Developer, Felix CHANDRAKUMAR", O=Felix CHANDRAKUMAR, C=AU

Issuer:
CN=Certum Level III CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
24CFAA920DFC035197485C2B5BA6B30D

File PE Metadata
Compilation timestamp:
12/24/2014 11:19:31 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:Q9pF4w9g9rVrVrRrxKCn8soVidOWf64CF4rW8jzWLdOgYo4kPX7:S8ttxxRoV3O68roLdOo4C7

Entry address:
0xB9AE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 48, 00, 00, 80, 10, 00, 00, 00, 60, 00, 00, 80, 18, 00, 00, 00, 78, 00...
 
[+]

Entropy:
6.5138

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
38.5 KB (39,424 bytes)

The file Phasing Utility.exe has been seen being distributed by the following URL.

Scan Phasing Utility.exe - Powered by Reason Core Security