planincline.exe

Devoir 2

Product:
Devoir 2

Version:
1.0.0.0

MD5:
830e642f73364019532388420e513acf

SHA-1:
2334389f33a4cd45dfd90b43d66057d9228cb527

SHA-256:
63a800baecfd65816b8346e34873d5cda215f1d0c12a0eeeea4c74e2ea0dc220

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 5:44:53 AM UTC  (today)

File size:
41.5 KB (42,496 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016

Original file name:
Devoir 2.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\planincline.exe

File PE Metadata
Compilation timestamp:
2/23/2016 11:54:41 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:5tI8C/i02yjIrSZoqit64TNkpTbtYL+wDTMPH0nIJzYg8JOOAjLQEj8j74CQj/4A:TIq0mSCPRGCqw/OHhJz8k50kWRpl/G

Entry address:
0x8E5E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.2300

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
28 KB (28,672 bytes)

The file planincline.exe has been seen being distributed by the following URL.

Scan planincline.exe - Powered by Reason Core Security