ManicTime.exe

ManicTime

Finkit

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘ManicTime’.
Publisher:
Finkit d.o.o.  (signed by Finkit)

Product:
ManicTime

Description:
ManicTime Tracker

Version:
1.4.9

MD5:
c7173d5a5d909be9b1b4780490fe1cc6

SHA-1:
c67c709d2075a0e03ae681a7ac47b80dd5bc23f2

SHA-256:
fabbe55c9207cf3e4275cfd80e0fb5bd89cbafe351aad78ff92c4b741061364a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/21/2017 8:18:01 AM UTC  (today)

File size:
569.3 KB (582,984 bytes)

Product version:
1.4.9

Copyright:
Copyright © Finkit 2010

Original file name:
ManicTime.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\manictime\manictime.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
2/18/2010 5:30:00 AM

Valid to:
2/19/2011 5:29:59 AM

Subject:
CN=Finkit, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Finkit, L=Ljubljana, S=Ljubljana, C=SI

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1E76D6138400206BD6FA15903B44B0F2

File PE Metadata
Compilation timestamp:
12/21/2010 8:35:10 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:h+QqcEwvxGx1BT9Fjx5dnmjkAl+QqcEwvxGx1BT9Fjx5dnmjkSR:habxPmjtabxPmj5R

Entry address:
0x489DE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 60, 00, 00, 80, 10, 00, 00, 00, 78, 00, 00, 80, 18, 00, 00, 00, 90, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 02, 00, 00, 00, A8, 00, 00, 80, 03, 00, 00, 00, C0, 00, 00, 80, 04, 00, 00, 00, D8, 00, 00, 80, 05, 00, 00, 00, F0, 00...
 
[+]

Entropy:
5.1977

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
282.5 KB (289,280 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ManicTime

Command:
C:\Program Files\manictime\manictime.exe \minimized \namC:


Scan ManicTime.exe - Powered by Reason Core Security