WDCLEAN.EXE

O.2.C. MARKETING

Publisher:
PC SOFT  (signed by O.2.C. MARKETING)

Description:
WDCLEAN.EXE (Nettoyeur/Cleaning tool) - Win32

Version:
20.0.1.0

MD5:
d65267406b7915a8578452c47d1433e8

SHA-1:
d924712853be678aa4065d2eb58e4da68c72d772

SHA-256:
12f5cc8254b86d4c8ebccca4330ec583ef724067dc0d90df2dc8f7500702788e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 9:55:51 AM UTC  (today)

File size:
83.7 KB (85,752 bytes)

Product version:
20.0 (20.0.1.0) VI 01F200041k

Copyright:
Copyright © PC SOFT 1993-2014

Original file name:
WDCLEAN.EXE

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\wdclean.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
6/6/2016 2:00:00 AM

Valid to:
6/7/2017 1:59:59 AM

Subject:
CN=O.2.C. MARKETING, O=O.2.C. MARKETING, STREET=13 RUE GABRIEL PHILIPPE, L=SURESNES, S=FRANCE, PostalCode=92150, C=FR

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008C5183FE536CC22828942BB3514C6EF6

File PE Metadata
Compilation timestamp:
4/28/2014 11:40:14 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
1536:scAiR1i5r52L0BkIehblEhtBr2ITmr8jaRKQQX4YQCDT+c+Gibixkz:l51iruMBVdhTHaR8N5/+c+Gip

Entry address:
0xD4B0

Entry point:
55, 8B, EC, 6A, FF, 68, A0, E7, 40, 00, 68, C0, D6, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, 5F, 57, FF, 15, 3C, E1, 40, 00, 59, 83, 0D, AC, 00, 41, 00, FF, 83, 0D, B0, 00, 41, 00, FF, FF, 15, 40, E1, 40, 00, 8B, 0D, A8, 00, 41, 00, 89, 08, FF, 15, 44, E1, 40, 00, 8B, 0D, A4, 00, 41, 00, 89, 08, A1, 48, E1, 40, 00, 8B, 00, A3, B4, 00, 41, 00, E8, 4E, 01, 00, 00, 39, 1D, 80, 00, 41, 00, 75, 0C, 68, 6C, D6, 40, 00, FF, 15...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
52 KB (53,248 bytes)

Scan WDCLEAN.EXE - Powered by Reason Core Security