DriverCure.exe

DriverCure

Paretologic Inc.

It runs as a scheduled task under the Windows Task Scheduler named DriverCure.
Publisher:
ParetoLogic  (signed by Paretologic Inc.)

Product:
DriverCure

Version:
1.6.3.0

MD5:
4a0a30ea2a40b3b540fddc4b720e6fb6

SHA-1:
77d3649d86eb5450c29e364ffd35c8039f1cb386

SHA-256:
34be128e9006fd74d2ed3d8f6dc8cf06d5d5fcd3686bca288abc416c98671d51

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:30:18 AM UTC  (today)

File size:
4.2 MB (4,433,520 bytes)

Product version:
1.6.3.7

Copyright:
Copyright 2014 ParetoLogic Inc.

Original file name:
DriverCure.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\paretologic\drivercure\drivercure.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
2/25/2013 11:53:32 PM

Valid to:
2/26/2015 11:53:32 PM

Subject:
CN=Paretologic Inc., OU=Paretologic Inc., O=Paretologic Inc., L=Victoria, S=British Columbia, C=CA

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121F9945D68B6DFDD557292B63C5A3015E1

File PE Metadata
Compilation timestamp:
6/24/2014 2:54:49 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:S48SaixK8pjZPdeJ3Wr/V8TIxaJ3rtB2m2qvsuuuAqgrw7pIgbDfeJjQXOgx01Ef:FWZQjZAFJ5gmBAkdIgbDfA15n6

Entry address:
0x1E49EE

Entry point:
E8, A5, B9, 00, 00, E9, 89, FE, FF, FF, 3B, 0D, 60, 61, 74, 00, 75, 02, F3, C3, E9, 2C, BA, 00, 00, 8B, FF, 51, C7, 01, 78, 96, 6C, 00, E8, 24, BB, 00, 00, 59, C3, 8B, FF, 55, 8B, EC, 56, 8B, F1, E8, E3, FF, FF, FF, F6, 45, 08, 01, 74, 07, 56, E8, 69, E6, EF, FF, 59, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 83, C1, 09, 51, 83, C0, 09, 50, E8, 63, BB, 00, 00, F7, D8, 59, 1B, C0, 59, 40, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 8B, 45, 14, 56, 85, C0, 74, 41, 83, 7D, 08, 00, 75, 13, E8, 19, 57...
 
[+]

Entropy:
6.6442

Packer / compiler:
PEQuake V0.06

Code size:
2.6 MB (2,747,392 bytes)

Scheduled Task
Task name:
DriverCure

Trigger:
Weekly (Runs weekly on Fridays at 01:08)

Description:
DriverCure


Scan DriverCure.exe - Powered by Reason Core Security