autorun.exe

Noviy Disk, ZAO

Publisher:
Noviy Disk, ZAO  (signed and verified)

MD5:
b707556f9d9b94667051930198489bef

SHA-1:
f3883f2825fa0a488490e1b19a43678f736bb660

SHA-256:
fe2abb87b1908f02d64f3e9121e9ea579e982c6ebc3b4eb752c08fad8df87804

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 7:01:02 PM UTC  (today)

File size:
5.2 MB (5,420,008 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\autorun.exe

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
11/27/2008 3:00:00 AM

Valid to:
11/28/2010 2:59:59 AM

Subject:
CN="Noviy Disk, ZAO", OU=Secure Application Development, O="Noviy Disk, ZAO", L=Moscow, S=Russia, C=RU

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
323448EB896E89F20C2550EA93E8BB0B

File PE Metadata
Compilation timestamp:
2/4/2010 7:44:40 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:eAzPy4A9UU+yIAg9p2zvFyrcOmlnGAlnXqb5Pgr9HaEus9:enM/etfLbB6bsLus9

Entry address:
0x6DD1C

Entry point:
55, 8B, EC, 83, C4, F0, B8, 70, C7, 46, 00, E8, 84, 8D, F9, FF, C7, 05, 58, 63, 47, 00, 94, 00, 00, 00, 68, 58, 63, 47, 00, E8, 2C, 90, F9, FF, 85, C0, 74, 62, 83, 3D, 5C, 63, 47, 00, 05, 72, 59, A1, 1C, 0B, 47, 00, 8B, 00, E8, 47, BA, FE, FF, A1, 1C, 0B, 47, 00, 8B, 00, BA, B4, DD, 46, 00, E8, 06, B5, FE, FF, 8B, 0D, B8, 0C, 47, 00, A1, 1C, 0B, 47, 00, 8B, 00, 8B, 15, D0, BB, 46, 00, E8, 36, BA, FE, FF, 8B, 0D, 0C, 0D, 47, 00, A1, 1C, 0B, 47, 00, 8B, 00, 8B, 15, 14, A1, 46, 00, E8, 1E, BA, FE, FF, A1, 1C...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
434.5 KB (444,928 bytes)

Scan autorun.exe - Powered by Reason Core Security