runtimes.exe

Ninite

Secure By Design Inc.

Publisher:
Secure By Design Inc.  (signed and verified)

Product:
Ninite

Version:
0,1,1,986

MD5:
0343171d7fef0f991406960ad1a1b13a

SHA-1:
4d90f8faaaf07e4da0ff2dae3d6e39c1e4ddc0ec

SHA-256:
cfe6b279d0c27591930446c76664cb3b661f7b11e535727fbf4577232819d416

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 3:03:32 PM UTC  (today)

File size:
300 KB (307,200 bytes)

Product version:
0,1,1,986

Copyright:
Copyright (C) 2009 Secure By Design Inc

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\runtimes.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/6/2013 11:10:05 AM

Valid to:
10/30/2016 4:25:45 PM

Subject:
E=contact@ninite.com, CN=Secure By Design Inc., O=Secure By Design Inc., C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121F113A31CC6E813B796ADB6F44C6FB7F8

File PE Metadata
Compilation timestamp:
8/13/2015 4:46:10 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
6144:Hp8r73+0cN1xHcoRHTkXUe1iTBMn8PtLb:Hqf81modeZ1iTSgLb

Entry address:
0x1BDC4

Entry point:
E8, 99, 9C, 00, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, 83, EC, 20, 56, 57, 6A, 08, 59, BE, B4, 44, 43, 00, 8D, 7D, E0, F3, A5, 8B, 75, 0C, 8B, 7D, 08, 85, F6, 74, 13, F6, 06, 10, 74, 0E, 8B, 0F, 83, E9, 04, 51, 8B, 01, 8B, 70, 18, FF, 50, 20, 89, 7D, F8, 89, 75, FC, 85, F6, 74, 0C, F6, 06, 08, 74, 07, C7, 45, F4, 00, 40, 99, 01, 8D, 45, F4, 50, FF, 75, F0, FF, 75, E4, FF, 75, E0, FF, 15, F4, 30, 43, 00, 5F, 5E, 8B, E5, 5D, C2, 08, 00, 8B, 4D, F4, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51...
 
[+]

Entropy:
6.5535

Code size:
196.5 KB (201,216 bytes)

The file runtimes.exe has been seen being distributed by the following URL.

Scan runtimes.exe - Powered by Reason Core Security