piratrax_launch.exe

Deniau Flavien

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Piratrax’.
Publisher:
Deniau Flavien  (signed and verified)

MD5:
e57bdad254b2c99e05812325a4db2073

SHA-1:
5e1ebcc004f6d2b47b595a854ef206a1f4cf129d

SHA-256:
29d76d223519aeb1dd53c131fe6b76a54c7f7f35b988b0e88dff21b81e48a310

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 5:11:09 AM UTC  (today)

File size:
365 KB (373,768 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\piratrax\piratrax_launch.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
3/5/2012 1:00:00 AM

Valid to:
3/6/2013 12:59:59 AM

Subject:
CN=Deniau Flavien, O=Deniau Flavien, STREET=le petit bodaine, L=Mazange, S=LC, PostalCode=41100, C=FR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
070384102440C8DD57A62B69D7A7B391

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:s1CR0e54h5clQ4Mm8rnnkPhS9uqgFUL0mwxQzwJbZcOIBlK:eCR0e54h35nShrqgozytuPK

Entry address:
0x4D184

Entry point:
55, 8B, EC, 83, C4, E0, 33, C0, 89, 45, EC, 89, 45, E4, 89, 45, E0, 89, 45, E8, B8, AC, CF, 44, 00, E8, 8A, 90, FB, FF, 33, C0, 55, 68, 27, D2, 44, 00, 64, FF, 30, 64, 89, 20, 6A, 05, 8D, 55, E8, 33, C0, E8, 30, 5C, FB, FF, 8B, 45, E8, 8D, 55, EC, E8, 71, B4, FB, FF, 8B, 45, EC, E8, 99, 76, FB, FF, 50, 68, 34, D2, 44, 00, 8D, 55, E0, 33, C0, E8, 0D, 5C, FB, FF, 8B, 45, E0, 8D, 55, E4, E8, 4E, B4, FB, FF, 8D, 45, E4, BA, 44, D2, 44, 00, E8, 79, 74, FB, FF, 8B, 45, E4, E8, 69, 76, FB, FF, 50, 68, 54, D2, 44...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
305 KB (312,320 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Piratrax

Command:
C:\Program Files\piratrax\piratrax_launch.exe


Scan piratrax_launch.exe - Powered by Reason Core Security