DEP2010NetDetect.exe

Dewan Eja Pro 2010

The Name Technology Sdn. Bhd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Dewan Eja Pro 2010 NetDetect’.
Publisher:
The Name Technology Sdn. Bhd.  (signed and verified)

Product:
Dewan Eja Pro 2010

Description:
Dewan Eja Pro 2010 Net Detect

Version:
2.0.1.1

MD5:
d5e572ba0cf9a5d0b0bace1d0cac67ce

SHA-1:
3118e02fac064d4c5fc061e656f941efa0da42ca

SHA-256:
bdc0e3f9f148756990d1448572d4a0660a8b458130b123e97840f958a7ced184

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 6:47:58 AM UTC  (today)

File size:
1 MB (1,084,416 bytes)

Product version:
2.0.1.1

Copyright:
2010-2011 (c) The Name Technology Sdn. Bhd.. All rights reserved.

Original file name:
DEP2010NetDetect.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\the name technology\dewan eja pro 2010\dep2010netdetect.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
1/30/2011 8:00:00 AM

Valid to:
1/30/2013 7:59:59 AM

Subject:
CN=The Name Technology Sdn. Bhd., OU=Secure Application Development, O=The Name Technology Sdn. Bhd., L=Cyberjaya, S=Selangor, C=MY

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
275B5223B46BD00091E7CB139C898EFB

File PE Metadata
Compilation timestamp:
2/11/2011 2:00:39 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:fSaRwu9Q1+jdcJ+i9ez/LHs+drFBkxOh/7yK6yMDCvel:Lwu94+jdcJ+mOseBgOhTyKuWvel

Entry address:
0x241000

Entry point:
83, EC, 04, 50, 53, E8, 01, 00, 00, 00, CC, 58, 89, C3, 40, 2D, 00, 30, 0D, 00, 2D, 9E, 0A, 6B, 00, 05, 93, 0A, 6B, 00, 80, 3B, CC, 75, 19, C6, 03, 00, BB, 00, 10, 00, 00, 68, 60, 70, F3, 61, 68, A2, A2, 29, 1D, 53, 50, E8, 0A, 00, 00, 00, 83, C0, 00, 89, 44, 24, 08, 5B, 58, C3, 55, 89, E5, 50, 53, 51, 56, 8B, 75, 08, 8B, 4D, 0C, C1, E9, 02, 8B, 45, 10, 8B, 5D, 14, 85, C9, 74, 0A, 31, 06, 01, 1E, 83, C6, 04, 49, EB, F2, 5E, 59, 5B, 58, C9, C2, 10, 00, BA, 4D, 00, FB, 47, BD, 46, 85, CA, 6B, 67, 1A, 45, 12...
 
[+]

Entropy:
7.8958  (probably packed)

Code size:
284 KB (290,816 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Dewan Eja Pro 2010 NetDetect

Command:
"C:\Program Files\the name technology\dewan eja pro 2010\dep2010netdetect.exe"


Scan DEP2010NetDetect.exe - Powered by Reason Core Security