writer's block free.exe

Writer's Block

Felix Belzile

Publisher:
Felix Logic  (signed by Felix Belzile)

Product:
Writer's Block

Version:
1.1.0.0

MD5:
17cc8554b7eafad35d10eb0a24516392

SHA-1:
eb2debec5fda619a8f537dbbf9617a9a7678335d

SHA-256:
3c35cac6fbdb67b22327d9ea2cb25d62a9af44e4f1a87d895eff1f28ab404c07

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 11:27:31 PM UTC  (a few moments ago)

File size:
923.2 KB (945,352 bytes)

Product version:
1.1.0.0

Copyright:
Copyright © Felix Logic 2015

Original file name:
WritersBlock.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
3/6/2016 7:00:00 PM

Valid to:
3/7/2019 6:59:59 PM

Subject:
CN=Felix Belzile, O=Felix Belzile, STREET=530 Laurier Ave W, L=Ottawa, S=Ontario, PostalCode=K1R 7T1, C=CA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F2D8FD16E5806A3F0A8BBEBB5233B422

File PE Metadata
Compilation timestamp:
10/4/2015 10:46:32 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:l6V+qfdSc+3ZbPXX44444Q8H64XI4f44T7f444TALwy6V+qfdSc+3ZbPXX44444f:UNNENNzHiQ3CUixSo0ia

Entry address:
0x8C0DE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
3.2750

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
552.5 KB (565,760 bytes)

The file writer's block free.exe has been seen being distributed by the following URL.

Scan writer's block free.exe - Powered by Reason Core Security