Canceled Shutdown.exe

Canceled Shutdown

Product:
Canceled Shutdown

Version:
1.0.0.0

MD5:
a9a6006905a68d6d969acc128b01582f

SHA-1:
7c03290155dc7a8847001a3e36163c432a185298

SHA-256:
8145c24a6bdd896448e37adb97c0f99f65d7f4e36709fe01235a80011a28f612

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 5:50:17 AM UTC  (today)

File size:
7.5 KB (7,680 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016

Original file name:
Canceled Shutdown.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
3/20/2016 8:44:02 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
96:piqhdK6JdIG6xacjIECdxNRPhiWdtGXbqpMH2EZfF1zNt:PdKW4x/jIEyxfPh8Lqav1

Entry address:
0x32AE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
4.6752

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
5 KB (5,120 bytes)

The file Canceled Shutdown.exe has been seen being distributed by the following URL.

Scan Canceled Shutdown.exe - Powered by Reason Core Security