ccffacebook.exe

Plura Processing L.P.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Chit Chat for Facebook’.
Publisher:
Athena IT Limited  (signed by Plura Processing L.P.)

Description:
Chit Chat for Facebook

Version:
1.4.5.4

MD5:
55d8e86b0f0f87761549a3a121009408

SHA-1:
1fbe91f84302c1e20fa2d927ca70b9b8be8af060

SHA-256:
97aeee9ebf387079681ce4740008b6c7832fcd9ed67e1a5a90b645daf690288c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/9/2024 1:44:06 AM UTC  (today)

File size:
3.7 MB (3,862,528 bytes)

Product version:
1.4.5.4

Copyright:
Copyright 2011

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\chit chat for facebook\ccffacebook.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/4/2011 2:00:00 AM

Valid to:
9/8/2012 1:59:59 AM

Subject:
CN=Plura Processing L.P., OU=Digital ID Class 3 - Java Object Signing, O=Plura Processing L.P., L=Houston, S=Texas, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
30D0E143F198F2579B16E47EDA3E16AB

File PE Metadata
Compilation timestamp:
11/28/2011 11:38:46 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:w+O/smEQtBCh0DyoXyrCrqKrJXnikKz96TSTrMdHooC41NZc4D:HOkmEQDCh0DxiruXn8lZoC4lcg

Entry address:
0x2AA06C

Entry point:
60, F7, C7, 47, 90, 7F, 2A, 52, FF, C1, EB, 07, 48, 80, E1, 9E, 0F, AF, ED, EB, 06, 69, D8, 53, 09, CC, DA, 8D, 35, 72, FC, 0B, 21, 8B, F6, 8B, C6, C7, C6, 7F, B6, 6D, ED, 81, F5, 1B, 73, 57, 2F, 8D, 0D, 1D, 2D, 4B, 3C, 2A, FE, 21, FD, 8D, 38, C7, C3, 3D, EC, 8B, C8, 2B, CD, F3, FF, CF, 29, F9, 8D, 2D, 3E, 58, 90, C8, 77, 08, 0F, BF, CE, 89, C7, C6, C3, 2F, 81, FB, BE, 4B, 00, 00, 71, 04, 8B, CD, 28, F1, E8, 00, 00, 00, 00, 6A, 00, 5D, 71, 04, 22, D1, FF, CB, EB, 09, 0F, B7, F3, 69, F8, 0C, 9A, 9C, D6, EB...
 
[+]

Code size:
2.7 MB (2,788,352 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Chit Chat for Facebook

Command:
C:\Program Files\chit chat for facebook\ccffacebook.exe


Scan ccffacebook.exe - Powered by Reason Core Security