ford.exe

Vae Victis SRL

Publisher:
Vae Victis SRL  (signed and verified)

MD5:
16ac71c852186d5dd68430bff38d54b0

SHA-1:
d6918b735ce81fcef99a4cb9972b640661d87297

SHA-256:
a8bc4e179f33b08b5656b4421c1bfda04a500b61f83eb8fea126ecb57acf0fbb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/6/2024 6:14:46 PM UTC  (today)

File size:
4.6 MB (4,781,424 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\vaevictis\racecraftford\ford.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
7/13/2016 4:18:40 PM

Valid to:
7/12/2017 8:04:38 PM

Subject:
CN=Vae Victis SRL, O=Vae Victis SRL, L=Cesena, S=Forlì-Cesena, C=IT

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
008CDDC1777CDA3BB8

File PE Metadata
Compilation timestamp:
9/8/2016 11:48:42 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
49152:ESGh7IerW9540qeD3XrOgtXQ4K0LE9XCUePlb+wJ2tXfKjuocOYfKIPxSsvLOZNb:ES9/Vja+X7kXCHQwjGfKxNb

Entry address:
0x21A8B4

Entry point:
E8, E5, 0E, 00, 00, E9, 69, FE, FF, FF, 55, 8B, EC, 5D, E9, 42, F9, FF, FF, E9, 56, FD, FF, FF, 53, 56, 57, 6A, 00, 68, A0, 0F, 00, 00, 68, 08, 22, 81, 00, E8, 90, 10, 00, 00, 83, C4, 0C, 68, 00, C2, 79, 00, FF, 15, CC, A1, 79, 00, 8B, F0, 85, F6, 0F, 84, 8C, 00, 00, 00, 68, 1C, C2, 79, 00, 56, FF, 15, F0, A1, 79, 00, 68, 38, C2, 79, 00, 56, 8B, D8, FF, 15, F0, A1, 79, 00, 68, 54, C2, 79, 00, 56, 8B, F8, FF, 15, F0, A1, 79, 00, 8B, F0, 85, DB, 74, 37, 85, FF, 74, 33, 85, F6, 74, 2F, 83, 25, 24, 22, 81, 00...
 
[+]

Code size:
3.6 MB (3,770,880 bytes)

Scan ford.exe - Powered by Reason Core Security