TaskCanvas.exe

TaskCanvas

Digital Volcano software Ltd

The application TaskCanvas.exe by Digital Volcano software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘TaskCanvas’.
Publisher:
DigitalVolcano Software  (signed by Digital Volcano software Ltd)

Product:
TaskCanvas

Version:
1.1.0.0

MD5:
5afe7490263969ed36f7384af22271e4

SHA-1:
cb8c1b3b77ea0bb0158e9fdb86b9fbbfe0dabe66

SHA-256:
789fda338affcf213748e141fe0ce5e5e68d1421b1bf523bc5e1c9f1ba481446

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
5/26/2024 10:29:16 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.3.13.18

File size:
484.2 KB (495,824 bytes)

Product version:
1.1.0.0

Copyright:
Copyright © 2013

Original file name:
TaskCanvas.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\taskcanvas\taskcanvas.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
3/5/2013 7:00:00 PM

Valid to:
3/5/2016 6:59:59 PM

Subject:
CN=Digital Volcano software Ltd, O=Digital Volcano software Ltd, STREET=6 Uplands Road, STREET=Oadby, L=Leicester, S=Leicestershire, PostalCode=LE24NS, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
0087778AAC8AFDF690B56AB0A56F946387

File PE Metadata
Compilation timestamp:
9/13/2013 9:50:15 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:wKxiztk62Pr5QbrL9T3/pxgMkuDBToJZWqu/ziVaz+t8fnkpSqXIPn91UDwpj2Pj:wKI2Pt2BTQYfESfHj2PtKM

Entry address:
0x5D676

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.5427

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
366 KB (374,784 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
TaskCanvas

Command:
"C:\Program Files\taskcanvas\taskcanvas.exe"


Remove TaskCanvas.exe - Powered by Reason Core Security