sdnsplus.exe

Simple DNS Plus

JH Software

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Simple DNS Plus’.
Publisher:
JH Software ApS  (signed by JH Software)

Product:
Simple DNS Plus

Description:
Simple DNS Plus - Starter

Version:
5.0.105.0

MD5:
8d8915ce71c285edab7b87d537cf8654

SHA-1:
dc072dba1e196693718f6d60ac04ad00a55c46be

SHA-256:
9d79ab6648c1b4d0427b941595d679f9908342e22f5da9ef0ea704f6336357da

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 4:33:04 PM UTC  (today)

File size:
190.2 KB (194,768 bytes)

Product version:
5.0.105.0

Copyright:
Copyright © 1999-2008 JH Software ApS

Trademarks:
Simple DNS Plus

Original file name:
sdnsplus.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\simple dns plus\sdnsplus.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
10/5/2006 2:00:00 AM

Valid to:
10/5/2008 1:59:59 AM

Subject:
CN=JH Software, O=JH Software, STREET=Nordre Skanse 68, L=Frederikshavn, S=Nordjylland, PostalCode=9900, C=DK

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
6004AD4F9A8ACE200CCFC088701564F5

File PE Metadata
Compilation timestamp:
1/31/2008 1:30:38 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:wm4Y3z4ePZiyOEEjhaHC94bh7/kuf/xvTKX3xrgUE8QhaHdZ1:wKnXiuh7cuf/wXhk2/1

Entry address:
0x161AE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 90, 00, 00, 80, 10, 00, 00, 00, A8, 00, 00, 80, 18, 00, 00, 00, C0, 00...
 
[+]

Entropy:
7.1189

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
80.5 KB (82,432 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Simple DNS Plus

Command:
"C:\Program Files\simple dns plus\sdnsplus.exe" -s


Scan sdnsplus.exe - Powered by Reason Core Security