easynoter.exe

ART PLUS D.O.O.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘C:_USERS_CLIENTE MIX_DESKTOP_EASYNOTER.EXE’.
Publisher:
ArtPlus Software  (signed by ART PLUS D.O.O.)

Description:
Art Plus EasyNoter PRO

Version:
4.5.9.809

MD5:
1108d5092adfe59d22666670bd086db3

SHA-1:
ef0ac17cf844ff597d5f1639d395882988daba56

SHA-256:
c115aeb5f921bfd003205a42d5a1f6be512de0abb57491dd26b2ea3ce18d52a2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/30/2024 1:34:14 PM UTC  (today)

File size:
6.6 MB (6,875,280 bytes)

Product version:
4.5

Copyright:
Copyright © 2016 ArtPlus Software

Original file name:
easynoter.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/18/2016 9:00:00 PM

Valid to:
5/19/2019 8:59:59 PM

Subject:
CN=ART PLUS D.O.O., O=ART PLUS D.O.O., STREET=Kapelska 5, L=Zagreb, S=HR, PostalCode=10000, C=HR

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00C93DC20B072571095C96B12F2618B345

File PE Metadata
Compilation timestamp:
10/16/2016 5:57:07 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:FuRathDYC3KipcZtaUK2xmAIWjryejPv21mFucoiZsVzsViug7GOy:AUthUo0K2xmNejPZUc2zsVehy

Entry address:
0x437F58

Entry point:
55, 8B, EC, B9, 05, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, B8, 50, 5A, 82, 00, E8, 65, 5B, BD, FF, 8B, 1D, D0, 5F, 84, 00, 33, C0, 55, 68, C3, 82, 83, 00, 64, FF, 30, 64, 89, 20, 8B, 03, E8, B6, E2, D9, FF, 8B, 03, C6, 40, 67, 00, 8B, 03, BA, E0, 82, 83, 00, E8, 54, DC, D9, FF, 8D, 55, E4, 8B, 03, E8, C6, EB, D9, FF, 8B, 45, E4, 8D, 55, E8, E8, 2F, 95, DA, FF, 8B, 45, E8, 8D, 55, EC, E8, AC, 9A, BE, FF, 8B, 45, EC, E8, A4, FC, DD, FF, 84, C0, 0F, 84, 99, 02, 00, 00, B8, 1C, 83, 83, 00, E8, A2, FC...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
4.2 MB (4,418,560 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
C:_USERS_CLIENTE MIX_DESKTOP_EASYNOTER.EXE

Command:
"C:\users\{user}\desktop\easynoter.exe" \a \a


Scan easynoter.exe - Powered by Reason Core Security