Dropped Files | ZeroBOX
Name 8a265f137f9bd4c9_ivylace.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\IvyLace.png
Size 86.1KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 193 x 322, 8-bit/color RGBA, non-interlaced
MD5 df9960bd75494be3c8aa6953bc4b869c
SHA1 1b8e3720d85a3583443eca58e2827f0ba5e75b0c
SHA256 8a265f137f9bd4c9ba7bca815de1088e1f95c093a25901350b7cd0b4b14fde78
CRC32 FFF4B9BF
ssdeep 1536:tEYNBJ0JbTvglRPMu2FUqo5pnf6fAXk+C35bv7ty64zIW8X3j0R8zIoAJ:tTNBqPIliu2+rfAr+C35bvZypbY3YSB0
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name b39f51a64048fe26_mickeymouse.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\MickeyMouse.ini
Size 680.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 a32b0a69a50aaaf0199500937b815ea7
SHA1 f6e6d47d60107184deeab69a0b3ba0a7352063ab
SHA256 b39f51a64048fe26b41831d4dbb612965b967d9aa0f01d579038f67728508b8b
CRC32 20532646
ssdeep 12:a4EqmYLrrcR5pjpJrtOp0KPvE0BHy5W2iWO92GbblTYQJbwcz:BEQrm5b7Ou0v/ONifpVJci
Yara None matched
VirusTotal Search for analysis
Name 264f1f3ca50008d5_casio.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Casio.png
Size 46.3KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 190 x 210, 8-bit/color RGBA, non-interlaced
MD5 771989ca35f956e5af4e43df7f9e27d5
SHA1 e38b023d8c57225f7450b2fe0845877de8c85f05
SHA256 264f1f3ca50008d5a28b30e08741663264bd30cd53005a804179ba8f6fb396fa
CRC32 58718CAF
ssdeep 768:MgH34monBdcO89MlOEUp9/hXoIuFAMlalsAERfgNJJivcYIt:H0jkm0EUp9/2bFAMklIpQ
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name dad57975be6833c5_uninst.exe
Submit file
Filepath C:\Program Files (x86)\ClocX\uninst.exe
Size 52.6KB
Processes 2552 (twtyoe.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
MD5 3387961372fe91c2cc69b53180cbfee4
SHA1 ede6fb0d2319536efca218d461425d2addffd88e
SHA256 dad57975be6833c50d32ee77212addf11a80195d82365ade6042234e492bd845
CRC32 F711B2F0
ssdeep 768:EGn4o4BL/akfpI1nu0LXGS8BPfeyWMZtuHvwbtOuIYdPc+92TUXr6fJkdn:D4hwgonu0fJytuPwbdNc+9aUXr6fJon
Yara
  • Malicious_Library_Zero - Malicious_Library
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
  • UPX_Zero - UPX packed file
VirusTotal Search for analysis
Name 08f9b95562e2d517_marblehour.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\greenmarble\marblehour.png
Size 3.7KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 114 x 19, 8-bit/color RGBA, interlaced
MD5 bd2ecafe288b72ee504ac1a40130f02a
SHA1 58586107f3a6cd4885c0a7801921122370e60372
SHA256 08f9b95562e2d5179e821797cb9158234436eced344c6257ea60fa1dddfa4654
CRC32 1A07D54B
ssdeep 96:WBxILSDd4G24IscGnu+Pk3Tt6Z3Xw0A9dqXWO:WzkSDd6GnuHTEZ3g0soD
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 8285c04903a1f1aa_espanol.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Espanol.lng
Size 2.4KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text
MD5 ea82ee5d70868307fb93ca810cae4613
SHA1 5f41c9092e8d9fc09ac8143c1dd2994903800d86
SHA256 8285c04903a1f1aa4451f0ab81401b88a9ffaf720952b703c708b7363f420eaf
CRC32 EF8180D4
ssdeep 48:+SPTJ2eRlB17zb6X3vbc+Texw1Kr/CaA8HvrSdU2VGgcQwha4a6/3V8vcv:+4l2eXT7PY3zc+xMyEvP2shQwUsVl
Yara None matched
VirusTotal Search for analysis
Name 6efa274e645cce14_blackclock.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlackClock.bmp
Size 7.9KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 117 x 119 x 8
MD5 99997471274b4a052f0bbdf11ef4d52b
SHA1 c66163666a712aded3981fc62f6545ee26b37ff8
SHA256 6efa274e645cce1483c678fd22df195413037a95681788dd758c5bb99aa92418
CRC32 56D1BD68
ssdeep 192:xSaertTTPSCkul+KvKPq+guw3NVvY5WlHBHnaXO1Kuk5hVR:xeF6CLlraRw3Na56p5rk5hv
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 6165135988469cf8_itoolsclock2.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\iToolsClock2.png
Size 24.1KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 a0fab9d64776d909d03745ca21568dd7
SHA1 75a12dfcc4bb1f1160b534409d9f723ad569ab7f
SHA256 6165135988469cf85a4352f5d4fce2643b8f4c42b367c1d7025ca3b02fce2fcc
CRC32 E1733054
ssdeep 768:xKNFVXxc1+jwftQAyOZ1piMTk07EHwvaa8aktocco:UN7DcJTtTk0g6aa8aVY
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 01ef0594d6b5e5e5_ballclockaqua.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BallClockAqua.png
Size 18.1KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 31adc20e79c6f0b4b4bd624c4960a24e
SHA1 0dd73a3a8b5e8fea8aaf86df4ef8ef608eac411d
SHA256 01ef0594d6b5e5e5c3c02475e1096cb9a307c40e167dd26d11bfe352c458bc08
CRC32 F8C09DD2
ssdeep 384:5DR08eJq+7lRlGCjOa1tplFiea2xb5xa3y7q28T:QXqCj/1tplkyxdxUyW3T
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 28fd079455d8b533_holzuhr.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Holzuhr.png
Size 74.8KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 160 x 153, 8-bit/color RGBA, non-interlaced
MD5 3a3667d7b67b89c0ea9061711b3c6c6c
SHA1 d4ef1011e817d469c6079c066104fa12cd03d669
SHA256 28fd079455d8b533c4b3b4b217da82e9097f199edb3435d9d787b5e42ca342fc
CRC32 5D726E19
ssdeep 1536:a0YzZWfFT+/3XsqBkWMkizXqi1J4Py2huSyPYLY4l6ov4L9RI251yP:aLWt+/3XsY/yzaKJ4Mx4lhS9RDK
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name dbe467c95b421c4e_groennekugler.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\GroenneKugler.ini
Size 1.5KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 6299257e666ff7e94c35e5c06cf2c369
SHA1 283c54f59495a84734889776ed6f47ed5ab6a98e
SHA256 dbe467c95b421c4e0b99bf65a99feda9dd8c86687ff10889d3c1dfa6dbef3e3b
CRC32 4BC0D359
ssdeep 24:BE0rGXE5lr9BP5MoaKLuaPTO2u1DHkp8wdGj8xi85sjibtYQTd9iBY2jabOtWuc:BTqylRMofiiNdGjWCUtjTTiBY2Gb+Tc
Yara None matched
VirusTotal Search for analysis
Name a613e004ba3a8616_weemsplath.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\weemsplath.ini
Size 1.5KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 1ba352511dc3d718d12f1fc7f9cb4290
SHA1 52bae52e80ac073bea2f0431b956775b8a01d95e
SHA256 a613e004ba3a8616eab72f42ef36b7425b40365a61af112ce1cf0d79e871075b
CRC32 4A533FA7
ssdeep 24:BEZrGXE5lrABRhB0aKEszm1ETOs010Bi1ckpUdGIo8OiruPgibQ0Wd9iBxLuQI:BkqylUhB0fwL5n6dGJSuPXQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 6b612912b7a557d8_newdefault.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\NewDefault.bmp
Size 42.2KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 119 x 120 x 24
MD5 816fd13d82b4dd490414e053349fa722
SHA1 ea89ded1a0df180277660e50abee02405609c830
SHA256 6b612912b7a557d81789c0d3edb1fbb00b9acd1d9f7b4bd1e689e163aa2e8182
CRC32 DFC9C93B
ssdeep 384:kZSPu+ghYOPL1gvlqKQJ1YTWsUtpN4GbVkAl7y07L+T9s8:cSPpgevGrC8DbCYyzZt
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name be88e238cd1428c2_aqua.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Aqua.bmp
Size 39.8KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 116 x 117 x 24
MD5 f80744c019a522af5a4bdb6b9d99229d
SHA1 fd7067ab7257fb030b05dfdece58c7cf532160b6
SHA256 be88e238cd1428c247d1d9e8504746d07a564c75d0f82173a4bbc38bf64c5e14
CRC32 83ED897D
ssdeep 96:TWMaS6iyEE7D4blhUraVHX/6bLtqUtC8D5zd8R2YuIHwD555D51vyRI/Bke9HAmx:TWuVy+mVWIZWYKmJ
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name cda8f9357983bb80_uhr.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Uhr.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text
MD5 4d1c32bdbcfe4874ae33dedbbc870574
SHA1 a84adda368ce3649402ef9afde820cb28c549016
SHA256 cda8f9357983bb8070a26e8f8e4163be6ee41ee516f670a6f60fcd593efb3a6a
CRC32 09C29E3F
ssdeep 24:BEur7X5lruueRJoR1gTzIU1sRDkLKWoL/GL4wIdKgQi0VAP10mViWd9iiOMEKG:B97JleJoEFYjGteVPGCTiiOR
Yara None matched
VirusTotal Search for analysis
Name 7aa8f3decb9e9b66_holzwanduhr.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Holzwanduhr.bmp
Size 48.8KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 128 x 130 x 24
MD5 e119cd24c7fd2c54b082e7b27f5e11e4
SHA1 a78344b1a624cf58b2b6051f9864c966c78375bb
SHA256 7aa8f3decb9e9b660682cac31a0a77f92f9f47fa55de60fc259132fd4246135f
CRC32 23DF5FEB
ssdeep 768:ab87dRTe9524Xb8CR1ShryVMZAFoNYoEnT2Z2++7ClagdgXfgc7InbO:aIcEyVMZAedS2ZJqClwfgc0bO
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name eb308efa319ea51e_woodmin.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\woodone\woodmin.png
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 60 x 9, 8-bit/color RGBA, interlaced
MD5 71e6cf4fce7a3c0088267f1a71ed8630
SHA1 94b3755bf1077f8c52ffa7450df6094f1c72e939
SHA256 eb308efa319ea51e367092aae0bd118081c0340b6acad03c1d55e431e33469d9
CRC32 EB611CD2
ssdeep 48:3Od6w3EFNTi5xexqAPIzGS/S1eRl65PlgmpXnoBjuuSTq:3OdrUr+DqcieqempXnOvSTq
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 67b31cf35186fffb_bubbleclock.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BubbleClock.ini
Size 949.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 801b92a1950ed3e5a8cb847fa3af0f23
SHA1 50a53b61711eeb3cc200e1b11ff8408db37ecf2a
SHA256 67b31cf35186fffb4cd13ae825eaf0c71599ddaf2eed5eec8d791701b7118b73
CRC32 A2F9E103
ssdeep 24:BEsrm5b7OmTORXFB01rfukpWdGm8bCi51Pgi:BH0XCFK9MdGmQ71P3
Yara None matched
VirusTotal Search for analysis
Name 15dd5fa2e9718dc6_blueballroman.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlueBallRoman.png
Size 26.2KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 129 x 129, 8-bit/color RGBA, non-interlaced
MD5 ad4c8ef01b22b7220bb0691e9c392705
SHA1 b0a6835473db5b3aaf5699450631bff5a4204272
SHA256 15dd5fa2e9718dc6386e4b4620c1c1f173ce375604fd2d3d9c961f418051bb84
CRC32 B18C98F7
ssdeep 384:+lAnQBTH+Yw2dXkWG+Tmd3mEw1p02I4Hl8bgFvJqdxtej9NgSBlhN7Qdl/2KnGgt:hQBr+YbFDG+TCvWrDFkdxto3HYiDaK+
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 11f4a5755d5abfc2_clockbell.mp3
Submit file
Filepath C:\Program Files (x86)\ClocX\Sounds\clockbell.mp3
Size 12.4KB
Processes 2552 (twtyoe.exe)
Type MPEG ADTS, layer III, v2.5, 32 kbps, 11.025 kHz, Monaural
MD5 f29be0977bef501f9cc2eb3473a7ec03
SHA1 fa32d1ae499b0726e98266eef416f288c5e43c8d
SHA256 11f4a5755d5abfc2e6470c1df2cb67983cccad1f5af8c16e8a0b47321a862fcd
CRC32 4AC5AB31
ssdeep 192:iUmkPm5hJwn66NNF7I/b+aMcErEsgneaOaGZHReTKNlEvLkzu6462qvpS34Ocgt+:iHGmfCxqi/cErInATx5mLYu6AOOcfr
Yara None matched
VirusTotal Search for analysis
Name fb39e188154a042d_itoolsclock.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\iToolsClock.bmp
Size 36.6KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 109 x 114 x 24
MD5 2331bdba9c0f6fa92572223e3cb1d2b7
SHA1 9d855a8d1c1ecfe40d00b27ad40dfbed6ad253d1
SHA256 fb39e188154a042d73d47ceada791c364f3ceca5c6787aaab05096836cabf7b6
CRC32 23380641
ssdeep 768:ZeYZtcSt3USJzxy5s8aGBYSrJS33M2NKd7iiARW/nhRn3cBz:X5vFas8naSrmc2NaPWW/v+
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 191a3fcd80972fdc_wall clock medium.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Wall Clock medium.ini
Size 1.5KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 757ba281994bd6e525ea724a8b9e30df
SHA1 b3fedab89b7dc05765af004177ec25e784715cf6
SHA256 191a3fcd80972fdcbe2d2c69c9fa0e3a414b25ca38f9239588f6923f25269b7e
CRC32 87567D54
ssdeep 24:BEQrGXz5lrx7Bxi3aKSmgTONMI10XDkpfoIG/w8b4ia33NPeibQ0Wd9iBxLJCb:BzqFlyfWI9KIGoQOtPBQJTiBxLG
Yara None matched
VirusTotal Search for analysis
Name 73ddebf290683ce5_baiweather.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BaiWeather.ini
Size 1.5KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 d4f3c4b3ee12cddff6a83e9aaa565b3d
SHA1 696f89c01b34e6ddda7035ed179a8cbb4d7043d9
SHA256 73ddebf290683ce599e79003f95a804e17498ed4403d10cdc8b2092b4308a4c9
CRC32 32980759
ssdeep 24:BEZrGXE5lr9BxjTJaKhVY/hTOLX01rfXkpFdGIo85bifKzo+ibQ0Wd9iBxLuQI:BkqyllTJfgt+vdGJszohQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 29b49a701ac81741_universalaccessclock.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\UniversalAccessClock.bmp
Size 41.0KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 117 x 119 x 24
MD5 bc84d78607167f8c38b8b4cf7c33a54a
SHA1 11d9589accbd208a0385eba8104b4045727a7b1a
SHA256 29b49a701ac81741abf8e42f569ac57ff587e91c55d4e361e97d49ee3e5afa43
CRC32 9F2DB4E2
ssdeep 768:7qhT45p/v7mUzQgC3oi76ieOCycgyC20TgDsu+Xy9Ct3PaxFf6Hc:m1o/v7mSQgC3l6ieOCycgyD0TgDQWFS8
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 0b0692e09562b1c6_roman2minute.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\roman2\roman2minute.png
Size 3.2KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 100 x 18, 8-bit/color RGBA, interlaced
MD5 feaaea47ffcdd97bbab8cb95594ef1c8
SHA1 0e82a0462942c551f465cee6adcc5a50bad64337
SHA256 0b0692e09562b1c694938126d1e9ea74fa90a57c0d9471c2e0a23cfe7ce5a48e
CRC32 B0A3B797
ssdeep 48:7Sn/kwui7s9kX+QG5XH9Ek8bRs7aQqGPUEButE468UBLeYLpTHfvijH7j1:7S8s7s9klG5NKCaLqbAtEP8sLTLprvO
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 667a8f4c9f37badf_mclkminhand.hpng
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\MClkminHand.hpng
Size 4.1KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 99 x 29, 8-bit/color RGB, interlaced
MD5 7293d9082295616a46631e18065e8723
SHA1 b67481a1d09e19d91fc4bad975a2490545660570
SHA256 667a8f4c9f37badffbdd7708919bd6133a4f0c9b4599b3382a0b8478b17203ae
CRC32 DCCD514A
ssdeep 96:6fLdlazsuvgUltX4xgm/HZe0lPHtSPwZLoc:6fHarvgUSgmA0N847
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 5cfd95f49197ba7e_carpediem.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\CarpeDiem.png
Size 12.8KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 126 x 126, 8-bit/color RGBA, non-interlaced
MD5 1a5946136a4dab0c22fd35dccfaf5d12
SHA1 1c7641a17efee9f3fc5c907ed081bc0763d4cf0b
SHA256 5cfd95f49197ba7eba4bfb2b56b904b6c619eabde6b2b5adcefac264130f1347
CRC32 788F6D76
ssdeep 384:yznpBXF4w8UxPB6ce72dVBp8qKmTHbdZUH:qXaV7EVhFCH
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 9b5cda4bcf5f1de6_jagua3rclock.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Jagua3rClock.bmp
Size 37.6KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 113 x 113 x 24
MD5 0511d5edd48e385fe14e0e0a5ad3843c
SHA1 c742845ec023e86fe7b1ce77733fd5111c286027
SHA256 9b5cda4bcf5f1de67d41e96fde3da74a7355b31c8c30a9867079e5b515774c05
CRC32 3347652D
ssdeep 768:y4ktG2kfqzqNul4stj9IkOA/z7kOBSi3TyA+mjg/lhqt4mI6p:ex9xSO44
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name b42601106db4ff90_klokje.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\klokje.png
Size 47.2KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 142 x 158, 8-bit/color RGB, non-interlaced
MD5 8e926836d4b639e64589c7a01cb2dbb8
SHA1 e38f0941462d65192223f15c80096155be1c97bc
SHA256 b42601106db4ff9063c0c294a8b1f2a6a2748529d4a9c2815dee331cb94f0437
CRC32 E237890D
ssdeep 768:pY9E5Eg1OKxlfjEfgzYBLUkFhtzNKgHrOtGHUzNUGIKkV0QnA75GONU836Y:oyEgX21/tKgHpH4NUGGVA8OLqY
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 7f10e7820353e742_blueappleclock.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlueAppleClock.ini
Size 949.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 c01ed0b8cf60fb8904628b963d903fcd
SHA1 80e751986df1bd6272f172e7ec84cf7a6bd00dd9
SHA256 7f10e7820353e7422fa95f9523fc4a43dacee60806b025f37fd733a7dc6598fb
CRC32 9FC58089
ssdeep 24:BE/Drm5b7OmTORXFB01rfukpWdGm8bCi51Pgi:B2H0XCFK9MdGmQ71P3
Yara None matched
VirusTotal Search for analysis
Name 4664041204ac6d66_hallow.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\hallow.ini
Size 925.0B
Processes 2552 (twtyoe.exe)
Type ASCII text
MD5 91e71226494df487e040fad190d8d199
SHA1 b5647c7914884589f55e759a2a140b75cb6bf53f
SHA256 4664041204ac6d66df612c225c7457cce4cc16619d38acaa24fb770564b99d07
CRC32 F833BDFF
ssdeep 24:BEurZuC/Tzbr1nPkLKhaLgGLXoIZKgVi0uzUrn:B9pqnkGUnNU7
Yara None matched
VirusTotal Search for analysis
Name 13d52a3c7d896b2a_korean.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Korean.lng
Size 2.2KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 2eefdcda287c97061acbdf4409aa659b
SHA1 c1b8a1161d3eaf0836b991694931721da3f6e8de
SHA256 13d52a3c7d896b2af05774f7c6b0e43ad4d93953f0f721c490d610fb26ca22b7
CRC32 0B086B0D
ssdeep 48:cHQXRvolvFxZrTUJN2qu/4ppruwEjOz6fF+z6hEHQXwWMooOz/RlZxY7AkCTu:EQBQhFxZrwv2NwX5kO8+jQgWMooEHZlC
Yara None matched
VirusTotal Search for analysis
Name df2a006bdc8fc9fc_neon.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Neon.png
Size 42.6KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 180 x 180, 8-bit/color RGBA, non-interlaced
MD5 87304cfa94b7a6c97c5fad0e1d03aaeb
SHA1 1d42f855358b308f5ba790a3e7cb4eaf2161dd0e
SHA256 df2a006bdc8fc9fc01ababa6d223099540afe6c21d5a2aecbdf7c4c07f4ff133
CRC32 BFBEDBA6
ssdeep 768:DuF0MfMQQxIK70B7sJozsmZcWbgQK5d3/6cwivjm2A6SB9Cw0ZHYec5rLQoGd6dt:qSMfMQQKKIUoYG9bgQs1yc9V69rvecpR
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name cdcaa8879d4b2c31_blackappleclock.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlackAppleClock.bmp
Size 40.6KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 117 x 118 x 24
MD5 12232b20b415decc653b6bc5b9f0dddd
SHA1 e63540f2f7a39603de5b4aa212690dba028a2f42
SHA256 cdcaa8879d4b2c318f27ce0ab3048061a71e0f1050090ba53c54562d175deb30
CRC32 B453F3C1
ssdeep 384:eXNleXJJIKo5QHHHHHHHHaHHHHHHHHHHHHh/+tMHHHHHHHHHHHHHHHHHHHHHHHHd:7XJJt0ZlN1uBaCAv1hEPWU3c
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 9e5a84da02e5bb83_aqua-clock1.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\aqua-clock1.bmp
Size 36.1KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 107 x 114 x 24
MD5 56f18fd2ec130b2714c9bfeef92ed37a
SHA1 0bfcbbc051ba9323d9a8b5f0d7ddf77c75a21985
SHA256 9e5a84da02e5bb837b575b899f4ff55f5a0095c412c4433a2cfc922208cafa66
CRC32 017B3E62
ssdeep 192:CBccMWRLppppppW111111MhOCZX0/oYkjkX/dOMQz6ruH2qraRsEtNRY0ZE7DFF8:CBvcQX0/lOvf8BNvw1lKXlJ
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 45c550427466a858_cowboy2.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\cowboy2.png
Size 43.9KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 200 x 201, 8-bit/color RGBA, non-interlaced
MD5 c41a10919d89b2e79d9602b5644badb3
SHA1 f83673308724db3238ff799d30f8478c86cdd577
SHA256 45c550427466a8588b8b9c7eda3aa685c38cad1e6dcb6de43860b214b3c3fc76
CRC32 0A2C8D49
ssdeep 768:/tfJ+gfGQkB4WLWrl6K/OYI4U0SyJIWu2erDzyHJaYJFJICsYjqAwInHEVnVw:egf/04QWAK9IN0Lq2eqaYJFOCOAwIHgq
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name ee4ba265429c9866_casio.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Casio.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 247db811dd18688d6134fb3199cf5c30
SHA1 d82d5276ac82eff8637b71d8eee54149d17652ec
SHA256 ee4ba265429c986667b2b71d21d1fa0fafead643df2568594a3214f95e0dac4b
CRC32 ECB9AF24
ssdeep 24:BEQrGXz5lr9Bx6TORXFB01PRzkpWdGIo81OiDLPEGibQ0Wd9iBxLuQI:BzqFlxFKgMdGJGBLPEpQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name febebccff26778ba_alarme.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\alarme.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 d821262416fc40d087348659dec1c6e4
SHA1 05e9fd31ba6667274cc8b94466446ae492d41a3c
SHA256 febebccff26778ba1204cb6d58a7e889d44adbed33bc0fefaa3e32cef632fe3b
CRC32 6B6CC70D
ssdeep 24:BEQrGXz5lr9BxoaKy4rTORXFB01rfDkpWdGm8diF0PfXvibQ0Wd9iBxLuQI:BzqFluf1QFKOMdGmUPfwQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 2f8c5fd250d6f896_longhorn.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\longhorn.png
Size 10.9KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 126 x 108, 8-bit/color RGBA, non-interlaced
MD5 3768c9de0ba6520395ef84d7f56c02bf
SHA1 31a5fb80e4f7dc3bfc2b8bf016ef722baf2cf2f7
SHA256 2f8c5fd250d6f896c96c44984aa11c1b924696dbfd11270d624b68b0b255d521
CRC32 2C6D2A67
ssdeep 192:BSbxSBebSHnFYdZNEJnPM6Tk2jdQ5yKappg76uyqLi318HhC2e:BSbx64+n2do1PpgqdQ5PapYBL4SCz
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name e791213655f1cb3e_cowboy2.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\cowboy2.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 7b78a925bcbf93ff614a1c4fe7e84673
SHA1 6dbd5f227e72363b4301de8c7923442466714cd3
SHA256 e791213655f1cb3e5b5a08b01411e48d9ebe480166742a77f120b2964be2d7ad
CRC32 87C97635
ssdeep 24:BEQrGXz5lr9Bx6TOr01Ezkp8dGIo8bCiDadKibQ0Wd9iBxLuQI:BzqFlYBSdGJQlA9QJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name ba64e4a42fd5847b_itoolsclock.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\iToolsClock.png
Size 29.0KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 0239c87ad1e60a548109255c1cddf634
SHA1 03d224d459fc666a00e8468e656698e7b6d15447
SHA256 ba64e4a42fd5847b80b20cd0980ed7a4508bea01e88c0c6bfa0158860c8323ad
CRC32 0EC2692A
ssdeep 768:33epqn5/atVJHkAeHzV2TGjjCIUoqZttx7tP0nmdB9T:3f5e9kAIVbohowj
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name f247ed947b0f8337_alte standuhr.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Alte Standuhr.ini
Size 946.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 1ed534d32d9c5aec051584fd4f4a6ac0
SHA1 69ffd3f42b20ea7f0d8acf48a914265a2b03ed59
SHA256 f247ed947b0f833783b876902185821e47283039aba7114f114edd889cf04f45
CRC32 178ADD39
ssdeep 12:a4EqmYrrrcRQBjpJrprh27XFPV+J/PnXFPVG99XFPUXFqC2kpmdoH9Gs968v2ims:BEQrmu95UTOxf01kKkp5dG/8+i4352X
Yara None matched
VirusTotal Search for analysis
Name e6c0f7fc7f440fdc_wonderglobe2.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\wonderglobe2.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 dd1979cddbe6614ea4fce3617d2d8fce
SHA1 d5235ace6190a103e02e52e1055ccde04af9c39b
SHA256 e6c0f7fc7f440fdcf18d90a84fc6ea75b487867e60c27da3bd0a89c44add041c
CRC32 E8E04673
ssdeep 24:BEQrGXz5lr9Bx/aKy4dTOK01rfhkpGdGm8bCi1833NPeibQ0Wd9iBxLuQI:BzqFlpf1EY4dGmQD8tPBQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 0901474f95a0fc08_cloq.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\CloQ.ini
Size 1.1KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 4347579972618d2220b35d400e2497df
SHA1 cae1fe63be61c08c9880c21ad31c5e0f595596a2
SHA256 0901474f95a0fc08bf58f2e34cd2a46f3ee2a0b50742e6ab1d70b471bb084f6c
CRC32 56777BFE
ssdeep 24:BEQrGXz5lrkBJSaKy4qGTOXZZ410XiOkp5awGIo8bCiqwfQi:BzqFlCSf1qVX4jnDawGJQ8wfn
Yara None matched
VirusTotal Search for analysis
Name 278c33465b3da682_romanblackmin.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\romanblack\romanblackmin.png
Size 889.0B
Processes 2552 (twtyoe.exe)
Type PNG image data, 55 x 7, 8-bit gray+alpha, interlaced
MD5 5b9b2f8241e1842b9921a1acc940e78f
SHA1 c8a28f4dec48c4b63fe5e59aa7d9af11fa709d85
SHA256 278c33465b3da6829078264b5fb59293d261a97756b3781a2da45ae93bc5a5b0
CRC32 B0DEF50A
ssdeep 24:rwlFZSCKBRDl7IBTwBrFKc+yFZZQrrDy8Bnz:rwYCcp7pr0cDFZmrr+8dz
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name f37f0ee1842f9cef_bubbleclock.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BubbleClock.png
Size 25.7KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 94575e1b2268ebacfb4349ef05174f80
SHA1 d7b7f21875c9fdae5364804e3b4da77b9d0be128
SHA256 f37f0ee1842f9cefcffe4b291c8c247c7a4871252e551150677a86e1575c943c
CRC32 D454E179
ssdeep 768:xYBlu8IJvxWn5wpAdeR2CsBTw2ybm4LSUJ0sl95O:xIu8IJvxWnO+g8NyfEC95O
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name ffcaf7b027d1c6e0_negro2.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\negro2.png
Size 9.8KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 150 x 150, 8-bit/color RGBA, non-interlaced
MD5 f0f3d8bca45643b990fb0e2924bd4aa9
SHA1 6a60789bb15d0cee548691a379c95f9bfbee7b21
SHA256 ffcaf7b027d1c6e00f06437f1e4864417bdc4f2428125140118a73c6a6449b28
CRC32 EA42D1D2
ssdeep 192:prca/zZV69AIpL/JUxeRyqyrujNobJMFS3ZkjOsFsBgBEEziuS0roY:pgUHUplZar3ASJkbFikMUoY
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name fb73cfcc647f00cd_hungarian.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Hungarian.lng
Size 2.4KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 897df08d2097ebae47d45632eef4344b
SHA1 ce7718edca84272a94a19ef831604e88ee76caf9
SHA256 fb73cfcc647f00cd7fb3aad3f6fa6753ae62879baf4d4576cd8116e1aa55bcec
CRC32 7AE7CC03
ssdeep 48:fzycwT+JHTioGFfNUGN+WBgJL8u/o9XwcrPFTN79ZDx5UyfdQy4wPzevGTjTu:OPiJzjGFfNRYJl/o9DBVTUyfm/aTu
Yara None matched
VirusTotal Search for analysis
Name 2a4cf56fcf8001f8_neon.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Neon.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 f9da34467004f63fa227a92a987a53a5
SHA1 910197cec498dc6b075c50952441666d12940d5d
SHA256 2a4cf56fcf8001f8d6dbaa7229cc8bb52a638058746f76f8d170bae6fc3faab4
CRC32 12C26ECD
ssdeep 24:BEQrGXz5lrUNdaKy4jTORXFBA1rfLkppSPGm8eGiEw33NPeibQ0Wd9iBxLuQI:BzqFlCdf1YFuGHSPGmjtPBQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 9814cbdbe2037432_guldkugler.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\GuldKugler.png
Size 17.7KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 1600 x 900, 8-bit colormap, non-interlaced
MD5 fe01d57c5dcee76563ab98cc0c8191ca
SHA1 61e51410fe6e6e09d8437a80746c2640a31e30b4
SHA256 9814cbdbe2037432e1acd08483a1d09592b7286b10abed744e7f27e9e53249d6
CRC32 F02B2BB8
ssdeep 384:dMfoGG4iyzLXP0ZCh1zDXZ8L5cevao4+JSIrJUjTTSs6O2M:MoGGTuXsZw1DXZ8LlSZsr6TRHL
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name ca04c21ba94d6e43_baiweather.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BaiWeather.png
Size 32.9KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 161 x 161, 8-bit/color RGBA, non-interlaced
MD5 796618351aeb1c80c1fef6579990fb9f
SHA1 896adf790d7fab3e97079c4e5cb461a45b821ad3
SHA256 ca04c21ba94d6e432c436a26fef81609aa40c783462624ca191db9710fc84750
CRC32 F984BD34
ssdeep 768:0+BKTCFpP9wB4YZfKoAf8qzfc9XIpV8JzO64:0CNwflfA0Afc4X8JzC
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 7759c1c207eacea3_milkclock.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\MilkClock.bmp
Size 41.0KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 117 x 119 x 24
MD5 c429424dacb9e99c03e1c9aa0a43edac
SHA1 8b46c8cea93bb189d7bb658c2cb919c9bb5e73ec
SHA256 7759c1c207eacea3c0d807f973afee0431763194cf965af6d8a12b51e08269f0
CRC32 3506A552
ssdeep 384:48oCgzHI3a+orRHK546WiWERXIyX9mNobpDbWvwpOwxggScDYe9bahZ6biQP7l4d:nvarRqN9pkW2QP7+4j4tWldZU
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 4d7af300b3fbbc5d_slovenian.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Slovenian.lng
Size 2.2KB
Processes 2552 (twtyoe.exe)
Type Non-ISO extended-ASCII text, with CRLF line terminators
MD5 0c0351290ad760f3cea848f6f65b4af3
SHA1 c2e4a8b2426463f4e80cf9d5fe74317c55a76d3e
SHA256 4d7af300b3fbbc5d8ce3dcac871c9c6ca4edd6785721418c90042cc5c23dec01
CRC32 1FB4586E
ssdeep 48:ZWUFVFU14/Jj/aMzpW1yOrKUaA2DY5uSs8CIFNM8oy5G5GPunusGN66phovaTu:zc4J7aMY1yOrKUP2OC8vFmhykAPuuBi3
Yara None matched
VirusTotal Search for analysis
Name 89a25a2c8d5a5b26_ballclockice.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BallClockIce.png
Size 12.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 7341d4b09d1030d1cecea62edbd8de93
SHA1 060a6a44ed3c889908824ed64b31888ee65dca7f
SHA256 89a25a2c8d5a5b26f1c3749282ae1fecc42b690219d985392336747fe1a550fb
CRC32 103C690A
ssdeep 192:WSOYiiwKNMtJKMvHuOoOHZofl5rndayVeTtVUEilpFe7mfWq13L3wHR4dv3O9THx:5Y6WnjHZoflxV634FKGWW73eSdveIkz
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 22a6b9f1430102c2_comdex - omega1.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Comdex - Omega1.ini
Size 1.2KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 1fe0cf880a1fbd2c105e85361ecdd3f8
SHA1 0b49f938cbcbbfb4f28ff070f85f9b01ae02470a
SHA256 22a6b9f1430102c28388dc50604fa010eaae46778e1def800a8acdf12b91f8c2
CRC32 BAB63B0A
ssdeep 24:BEQrGXz5lr9pk/7FoB35k6s4H6T13Z41rfLkc31CGm8bCinCd0X:BzqFlk/7Fy3u67C4ecFCGmQtCd6
Yara None matched
VirusTotal Search for analysis
Name 45950471e4faf639_alert.mp3
Submit file
Filepath C:\Program Files (x86)\ClocX\Sounds\alert.mp3
Size 10.6KB
Processes 2552 (twtyoe.exe)
Type RIFF (little-endian) data, WAVE audio, MPEG Layer 3, mono 8000 Hz
MD5 74053f5e4bf6420f04ae67a74bd025eb
SHA1 eadbdfa25c6f7c14d7ee06d557ab8449b9551334
SHA256 45950471e4faf639815b99c48bd87c140610dcb587c0a9af1f941d63a7500d78
CRC32 484906B9
ssdeep 192:0OQIOBHC22Ddnc+uCpmoHrXAUyZyYLTPr6L3zCY+dEE2apqgTMUiirzT3wa:0VJU2Sdn6CcyAKY/e7zCYmEE2e/iif7r
Yara None matched
VirusTotal Search for analysis
Name c5fdcee509ec0ae1_comdex - omega1.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Comdex - Omega1.png
Size 71.1KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 150 x 328, 8-bit/color RGBA, non-interlaced
MD5 26e6d02144112f1919fcc08ac0f6ce07
SHA1 7d3d5f287bf72c85c6b14c6f3fa8fd858367b542
SHA256 c5fdcee509ec0ae18872eea9daec67dbdf3c98552db579b49fb0a88397bd8bec
CRC32 E956BDCE
ssdeep 1536:IQSHf6+JZpEmnuiBXnfTb7UXhy/HShAypIe7w0+hdCsX/SOLFI6vD9ccIiUcjk3a:ne6UtVBXnrb70775khX60rvmcPjYa
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name ab8d75a5b7230938_white_apple_clock.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\White_Apple_Clock.bmp
Size 36.3KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 101 x 122 x 24
MD5 fbd9ca6cbbc07c9f7b16577e2ba8abb0
SHA1 4f9a98c739e9d209f77ad99396a8a4b77c0cfe69
SHA256 ab8d75a5b7230938e834da4ecb043256dfe5466a30e59b2787bd08eac14de50b
CRC32 39090E9D
ssdeep 192:3G+xNKrzZ4gb85tG/llgjmJahf7TyTWU8DgEdtN8xytFmnmU9OHGTV/zMmZilkL0:3JNK543hjTyTWU4gEdz8Icnf9PFs3D8e
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 589112537079c342_blueballonlydots.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlueBallOnlyDots.png
Size 24.6KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 129 x 129, 8-bit/color RGBA, non-interlaced
MD5 3dbecac206657c42196eb6258b85f7a3
SHA1 f496af89cad84d2c09ea0121bc3bd5c5690a09ec
SHA256 589112537079c34208b56e728b61fffecc514d898d37e45a4039a1ebbe1e0261
CRC32 6ECC2F4A
ssdeep 768:86rfzS40W3RuiRp5F8IdXo0t0WyfrovfU+TnTC:8aG4PRlpUjWMMTC
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name f32a30899d104ef0_ring.wav
Submit file
Filepath C:\Program Files (x86)\ClocX\Sounds\ring.wav
Size 9.8KB
Processes 2552 (twtyoe.exe)
Type RIFF (little-endian) data, WAVE audio, Microsoft PCM, 8 bit, mono 11025 Hz
MD5 5549af0cbb0cc2f1ab1a1dd52ac3531e
SHA1 22e51923c9365edb643b68afbc8c44d0da25112a
SHA256 f32a30899d104ef03cdbda1d433015982ce34ea1d58481c1e437d56c92d2f5c6
CRC32 E9AED4AF
ssdeep 192:AHTBu49v6XhLYxXnIt6cFg9RdpVBFx3HYIQ04PpQlAZfu17QfW/Dtsy:0T19yRLYdnIt9+hpVBX3M00QlOGQfGDt
Yara None matched
VirusTotal Search for analysis
Name 72645cb08a9d89ee_mickeyclock.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\MickeyClock.png
Size 97.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 246 x 247, 8-bit/color RGB, interlaced
MD5 268519ba3d99bb1a48fc6a044eb1984c
SHA1 d5dbf25990d0d4b7254c31690569b76c7c6a95c0
SHA256 72645cb08a9d89ee34896521dff7cdd0ac79536c72296949d393a483d37b2cdc
CRC32 FDCFB259
ssdeep 1536:assTzTBUqQ3hK+9T/7NSOM0t5U7mn89Rby4MDS2NK3J9TvU68z/sa6xlcEyEPvTd:a3tUqKNSOMCDKbW+gU/xPvY1TRSa0
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 08ecbb835a9061d8_earth.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\earth.png
Size 56.0KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 186 x 186, 8-bit/color RGBA, non-interlaced
MD5 4aaff353a088e9b576d7439092b1dcf5
SHA1 ca044a1e5967d3cd2f9bb9f836b9866cd4cec0ef
SHA256 08ecbb835a9061d88a2b4e8955194f7a924a951d68c9c94f587a3e2ad6e6d707
CRC32 EC8F4F02
ssdeep 1536:iJ+ytG7+qh+bLgR52aFR/mizDX/xwE4pr9:C+ytG7J2LY52C7X5wn9
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 82ab2915f0c86cbd_Checker.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsuEE87.tmp\Checker.dll
Size 41.5KB
Processes 2552 (twtyoe.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 f523a939094cc8681a3636db2c8ff809
SHA1 608d175fa2c86b724f8137fead60aca3fc364265
SHA256 82ab2915f0c86cbdc4acc8ce4efd85af374b19d0d9f5c06006b20ba7bff56383
CRC32 D6EB90FD
ssdeep 768:FNZoBQfjXtKahyIXlQWBh/GxHxn2hEDVyx1jZvG9FN:FNZwApK0XlLYd9oM9L
Yara
  • Malicious_Library_Zero - Malicious_Library
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name d951bb6d6d6ff4d0_mclkhrhand.hpng
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\MClkhrHand.hpng
Size 4.2KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 82 x 29, 8-bit/color RGB, interlaced
MD5 1807d18c930d5b762c02dfa33439d019
SHA1 7f542e821a9c6f7af1a1b7120c4fff8dc29e6fbd
SHA256 d951bb6d6d6ff4d0b15e3b9c803bb51c8eb10ce976517a7dc97f8636c7e24eec
CRC32 5DFD6947
ssdeep 96:E6/uudQD0HcoVjwpVP8mJtJRIyi1vjnwMC1DyaebT1arybARHyAgWp:EYdd7VjwpBnnIyWvjnp4+a+T1arQAdyY
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name f4fad2f41abb996d_verde.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Verde.png
Size 23.8KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 176 x 176, 8-bit/color RGBA, non-interlaced
MD5 6695a6e6d1a860bef4e6b14dd3a40b22
SHA1 184d69e9c87fb39ab70a03e7834a416465f7c46d
SHA256 f4fad2f41abb996d7f8f149082ee0ac56e9960748fbb587e50a93432504790b0
CRC32 4B196949
ssdeep 384:wKtpFYgTIAbgpMWf7/uBGdxNE8OWzMQs8gwYG0F8LsI2u4QV14dAlsoRp4OhX9VX:7n3z2jYw4WzPs8gX7COFOl3
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 7da15b7c64292b1f_alarme.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\alarme.png
Size 94.3KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 218 x 273, 8-bit/color RGBA, interlaced
MD5 1138a4be4bb0fa2728e3d6dfe1c6b2e4
SHA1 1001a4d64d36486fad7e5acddd4f458829fc435d
SHA256 7da15b7c64292b1fe73983085a174669892a93d3cf344a613ebee8c33687898a
CRC32 307A7180
ssdeep 1536:OrUAxUUOq+08PZwDmJr9EfkFF8mYIDMvGZKfCg+kRTdIeKr86G0Ktu3O2UQ2s:P4wZwDsr9Efkv1xwGIfj+kR0r8LJQZ
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 75c6de781f983aaa_citizen.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Citizen.ini
Size 922.0B
Processes 2552 (twtyoe.exe)
Type ASCII text
MD5 80c7b322338d51e96594de91a5e3c603
SHA1 d1e2f5689e71e04c2a90e0fe44882cae67ab4ac1
SHA256 75c6de781f983aaa2a4f2bb7315bdd1314c6c3f052435dd378aa0d1f8c0b0ccf
CRC32 1B00CA09
ssdeep 24:BEurKluCXTzqr1sRHkLKOLgGLXoIdKghi0uSdUjn:B9K8VPkGUB+UT
Yara None matched
VirusTotal Search for analysis
Name b653c83ccb4b6026_octopye2.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Octopye2.png
Size 24.4KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 176 x 176, 8-bit/color RGBA, non-interlaced
MD5 e6b20aa4b1d6b2a0c678d9194d042be9
SHA1 106ceba43cd660d22367d54d40f82d000fdfc706
SHA256 b653c83ccb4b6026bc10fcc2e110bb7c37869b95722187d576d6710810f4ca88
CRC32 01C46DDA
ssdeep 384:PXE05mYZsf551uyWvNZ+ZM696UTYvUiRqYud3OKaLBlkBnsUA0Z6jX/wB:f35ZZk9uDvNEKdUTYvUmMiUMjYB
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 099e2d25a3bcbba9_universalaccess.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\UniversalAccess.png
Size 27.4KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 506f6336897626bd9835e476684e6add
SHA1 3c61fe92e21aca5079397899d3f28e8658ee92c5
SHA256 099e2d25a3bcbba998b4ced1d927c975267f129bca18865c41dbbc111428b6a7
CRC32 D9EF5AA5
ssdeep 768:OEJ3pClk2uBpQvaJU13kpxmAKL53BT//5UfMOYAIy:OEJ3ckjBpzmAmJD4Nb
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 1de95bc6957afb9b_roman2hour.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\roman2\roman2hour.png
Size 2.7KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 70 x 17, 8-bit/color RGBA, interlaced
MD5 c0086565894cb169bcc489833502b612
SHA1 b188d83ffd2bb7418e96678aebf3f0ffd68c581d
SHA256 1de95bc6957afb9b2906c37235c62a9b6ccf09b1c7a3580dbf18cc2877fa08e3
CRC32 97F9A976
ssdeep 48:WkrslCkP6Xi1YjEY8Dy1H05LdkKCMmXlpnXqz5yymUwKROk6D58GrQFfddu0:VrkCG1OEY8Dy1SiKxmVpXM5rJk/5vrQ1
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name d08bb435160f3021_dsx4.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\DSX4.BMP
Size 86.7KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 172 x 172 x 24
MD5 858779477d2cd597f1a2b379f25f2393
SHA1 0639e3c09e3007b2b81e07a7f1fedd80c340f325
SHA256 d08bb435160f30217ff90d2586e6178a5927787a453ca2b5b9f1f45f4d548d1f
CRC32 A76EE3C2
ssdeep 192:zcQE3KmYlXNZqpg7fGMGXGk+z19sLtNfcCuzE73qAWxmmXbDyio52j8USDPsA:GKTXNsC7fGMGMzKcCFqLxDDyiOPUSrsA
Yara
  • bmp_file_format - bmp file format
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 54efa1317f80dae7_original.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\ORIGINAL.INI
Size 947.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 3ff821f0959312f31cd380d311b2e690
SHA1 a0153085828ff32d7020d35330e37336191f5c69
SHA256 54efa1317f80dae7326e9fff03d5aa7beefed3b1f10eb5cc2e2349ef3e362baa
CRC32 0BCBBA45
ssdeep 24:BE8rm5b9VTORXFBP1rfjkpWCGm8Oi5Zri:BT0AFNuMCGmIZO
Yara None matched
VirusTotal Search for analysis
Name c2a189d25b3591e3_nvidia2.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Nvidia2.png
Size 37.8KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 180 x 180, 8-bit/color RGBA, non-interlaced
MD5 3f7a7f9ac3acb81a6ef1566c8abdea93
SHA1 63a3aa6dc8709bee66bc947ca44246457d18a146
SHA256 c2a189d25b3591e3f12e2da6d4d7d05b2c04588a15a0803fe1e66eb7bc460956
CRC32 BBF59ACD
ssdeep 768:YIygzjK57ldtn9T5V8/P6aUDIe2YpbZIflcVnhyEKUfa6:YIyl5719TQ/SEYpCchyRUfa6
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 2f7ac68d51c52c33_afrikaans.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Afrikaans.lng
Size 2.2KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 7f8d637f9ab63dc4120c6439b19710da
SHA1 38460cdd6c2ebb49fa2e49c6397aaff369697351
SHA256 2f7ac68d51c52c33d8186123bd0b7f8a2087ec5e5b3c5bd16fd844aa220774fb
CRC32 BBADDC63
ssdeep 48:YcosbKhFY9+dx0nCQIjGZfZfUnteSos+go5XboJ1oqcBI9zwqbkl9oKRvpgdTv:Gnx0n2jUqeRd5XsPNZbadvmdTv
Yara None matched
VirusTotal Search for analysis
Name 9c9d29270d4ad054_isink.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\iSink.png
Size 15.9KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 b932f8103eddbd166081d7e308135926
SHA1 92f0ff8b1b5b14f0e034cd91f27160e813874d9c
SHA256 9c9d29270d4ad054d858d04d10300a5705b074298f77de67dc93eb4c2c41fb19
CRC32 1DB4D0DF
ssdeep 384:5LaVln1o68AttjFEJ5w0t/4aCOr7fl5gehzqURT5u6ECv:+O69/g5nlQOr7fl55RT5uJCv
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 06a1292ff82c497e_milkclock.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\MilkClock.png
Size 20.9KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 47f1370d7ff57b3fbb2279bedb6b8aab
SHA1 4918369db575b65c1fc5429e4bdfb56b1318ef71
SHA256 06a1292ff82c497e9238734aef77c2f953371d5910a3af93289f6c2820508428
CRC32 09609F0A
ssdeep 384:5vztSCNV9xlvtlOzk3VB0/V+aWs9AGCexm2gRLfInmwzGCmTi5cUuYR00QQK1E50:TNV9vVlOu/0/7ZAGCexmdRLgmwzOikYm
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 45f75b2eb209aa69_itoolsclock2.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\iToolsClock2.bmp
Size 36.8KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 112 x 112 x 24
MD5 4599b6d452f4fef6bbb533a2e12cab3b
SHA1 9e53546f69f1832c33faa52cb59154b131991132
SHA256 45f75b2eb209aa69fcd83d5945a6ec408dbaa6b63f2ee11440da2e86153a0ed3
CRC32 553DE7F5
ssdeep 768:/88JTLJqN2AzWf7NhGQYqLhswFrfs6YmUicXZ66gNrHTWOjV:/8g8sAzWf7N4NEtZfgXz06MHTJ5
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 1e2467ea0bc4a8dc_metalluhr.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Metalluhr.png
Size 15.6KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 b7d40312c4d52be2dcdf3b26e28c4225
SHA1 694a2a386bc5ae7627eb643c16141c826862ba5a
SHA256 1e2467ea0bc4a8dc323a6b61f82165a6a52af8d12245b7b7441ff7c8e4d40ecd
CRC32 897953E0
ssdeep 384:/Uyi6ZuPdB7WF2ZylcQ25aSjZk9yeXi+FAvblFmLo0h6aGZRKdhVHeAnlF:/+6ZulBISIlyYKzmLD4aGDKrEAnj
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 4764809159e4fd2d_romanian.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Romanian.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 928a5c47953af408531cd2dc2ac8584e
SHA1 e27a61af8b8fe4b22b13ce948cbbd80e55a6af76
SHA256 4764809159e4fd2d9f0ed0e7f6d44a388c97bdcd6c2631d152dc871e29245ebf
CRC32 BB6B2B3A
ssdeep 48:9CsmPKCGCvGCtQCVlJupQnCY+hALpZ4AjrNGycLek18fwwV3MuZsCHYQ2r:9OPKjuGEQ2JqQnCYOErNGtLekKIwV3TW
Yara None matched
VirusTotal Search for analysis
Name e13660622877a2d3_clocx.lnk
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ClocX\ClocX.lnk
Size 1003.0B
Processes 2552 (twtyoe.exe)
Type MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Archive, ctime=Mon Jan 14 06:48:34 2013, mtime=Mon Jan 8 14:00:25 2024, atime=Mon Jan 14 06:48:34 2013, length=2090496, window=hide
MD5 b60e46c43e6e6a3548d72828cd0231c2
SHA1 e3c746dceeb1b3f0d74efc178ec608caa8572ce9
SHA256 e13660622877a2d370d770ee079f5b8e6a08ea4f948e40662d49eb86d70ff63c
CRC32 6E4DCA6B
ssdeep 24:8mYS19dOEC59DZv+AZ1MdjuggdjIUPPyx:8mYS3dO1jnZ1MdkdZnyx
Yara
  • lnk_file_format - Microsoft Windows Shortcut File Format
  • Lnk_Format_Zero - LNK Format
VirusTotal Search for analysis
Name b7cd2c45291c1912_adler.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Adler.png
Size 54.3KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 130 x 130, 8-bit/color RGBA, non-interlaced
MD5 0429009042c10c55baa8a1399e50439a
SHA1 3e1290ede1d59d407747b2549e5e377ce1ebef2d
SHA256 b7cd2c45291c1912745bfbab53d09deb7807f5d7343bdd258a44d47b9b1bc9d8
CRC32 A0D15E7E
ssdeep 768:AvEl7OYQJBlmbnzl7WWsHp8Oi4rdq3mQYomnVb6kanEpHVjaBqUXz:xYmbzoWACO1rd7QYoeWERsz
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 02696689d1ef5b7c_bahnhofsuhr.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Bahnhofsuhr.png
Size 29.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 129 x 129, 8-bit/color RGBA, non-interlaced
MD5 194e941b01069dfd6adaa0eae5133fd0
SHA1 320dd2e272dc6ab8f96c837262e2ae13330f50a7
SHA256 02696689d1ef5b7c77ce40c439cd6d9be7f4abde14b59f52297cd113955b6947
CRC32 65241E70
ssdeep 384:iJ7Z3xRpqfyMY75H8OWTuMcSVp4yiuNtv9lPadvB5iAR63e0MHAFq/zVIe+c9NAD:OZ3ReyMgFsuMlHFP9lyF7vkqOtwrY
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 6c422277c9bc2391_omega.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Omega.png
Size 67.1KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 170 x 191, 8-bit/color RGBA, non-interlaced
MD5 90b33f49ba0866f011d67e640cca98b0
SHA1 35dfda4f68cbeb266587d307343fa4bf2ea7dc96
SHA256 6c422277c9bc23912ca6aef5a32f141ff1a7ad06711c52005fd8beae7c0655e3
CRC32 543BE925
ssdeep 1536:pJAQ0eiN162qhdH6wOnlskiRG5xFQlYbQFvUbxARNq:pJR0eiNnjlnlsjRMxFQkgdNq
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 7bd5baaf5212eefa_ivylace.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\IvyLace.ini
Size 1.5KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 3d708d8f639f76d859e665ef694a62ef
SHA1 0b1cc310f0033f40d0893bb5a13e6b69e6f2987f
SHA256 7bd5baaf5212eefad806866581eec7cef31bca8d1fdb1189f246f3ce6bf0cbfe
CRC32 54BDE573
ssdeep 24:BEZrGXE5lrABRhB0aKEszdeTOs010BJGkpUdGIo8dip4UGibQ0Wd9i8xLnQI:BkqylUhB0fXjAf6dGJP4AQJTi8xLQI
Yara None matched
VirusTotal Search for analysis
Name 9e07c7737174b058_carpediem.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\CarpeDiem.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 3f95c7c4c98812f4937de9230feb4c12
SHA1 6e9299ae2a062ba6914c4f824cd5b7f7f5ff995e
SHA256 9e07c7737174b058c6ecfa5a82b5093d8647467c5a30be39497f95cc1cd454ba
CRC32 C72D194C
ssdeep 24:BEa2rPCkjbHSCEsrTNTOe01rfLkpGdGm8Ri+gFFibQ0Wd9iBxLuQI:B4VbHHIG4dGmSgFyQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name b30b748aac01bcf4_blackappleclock.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlackAppleClock.png
Size 23.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 ebfd13181f171f5e71d710a6ea9f129b
SHA1 e435734c679f3d7360b58498416703e63b41b699
SHA256 b30b748aac01bcf421013976b3ba9df1da074077d35773624e5b2411d7e49b52
CRC32 1A552303
ssdeep 384:5fOprdUBSqoJzEJzpXqIVCiBZ75lAIy9Q/Z8RpzjLn6itBtIOe4HY85Y+KeFz:ROprKPezA1LVCiJTZ8RpvN+OemY2YGFz
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 616e149f162dbdea_wall clock medium-sec.hpng
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Wall Clock medium-sec.hpng
Size 323.0B
Processes 2552 (twtyoe.exe)
Type PNG image data, 72 x 14, 8-bit/color RGBA, non-interlaced
MD5 b5acf30d1585fab9da09cda5d6a4fee2
SHA1 98fa6bfa72f2c9241aabb36ef6e36f5b9723e666
SHA256 616e149f162dbdeae89bc3feb6271bcb5300fae10000f55dc56b0e399b60a055
CRC32 39970EC7
ssdeep 6:6v/lhP++2xlv3zF1QOOtWbUgdyNxhnYpXLxDaRPYXuoBUSvux2nrkFp:6v/72rzF1wtWb9cxx0VGYXuoBUGlnwr
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name ef1aff8d42c199fa_earth2.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\earth2.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 f38314a74205c38938a37a67492d55f9
SHA1 a66f27af7d0c055ba04f2d8de77faa9c798d5e52
SHA256 ef1aff8d42c199fad7e1569dc34ed48f9a68b6cb15675040b6154c69164e7eaa
CRC32 7F9EEC0B
ssdeep 24:BEQrGXz5lr9BxoaKy4dTOK01rfhkpGdGm8bCi1833NPeibQ0Wd9iBxLuQI:BzqFluf1EY4dGmQD8tPBQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 282397f5efc6b5a5_clocx.exe
Submit file
Filepath C:\Program Files (x86)\ClocX\ClocX.exe
Size 2.0MB
Processes 2552 (twtyoe.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 2943a5a31664a8183e993d480b8709bc
SHA1 e7c28c1692073cf3769b61a8b298d09497d2a635
SHA256 282397f5efc6b5a517881350736901620649c3cf0a692423cf77b9093f933e8b
CRC32 24278A1D
ssdeep 49152:g6vznGwXRuYl294VVamxwoWVXOSLsJelqJ1cya/caqYY3MSV2Uu:bpXRu594VVajoSXOSLielqJulc1YY3Ms
Yara
  • Malicious_Library_Zero - Malicious_Library
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
  • Win32_Trojan_Emotet_1_Zero - Win32 Trojan Emotet
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name 8cfe40fcb3b948bc_longhorn.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\longhorn.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 46c0294fe18adf12e512cc5ceb02ff8a
SHA1 7a3d6dcc3452649fb56a22991cd46b2575a8b6fd
SHA256 8cfe40fcb3b948bceb7969332b8f4a1e5955472c98d5b947c0d3af72f05a82e6
CRC32 7E6E5FC6
ssdeep 24:BEQrGXz5lr9BxoaKy4ATORXFB01rfwkpZdGm8bCi+ZQibQ0Wd9iBxLuQI:BzqFluf11FK3fdGmQEZHQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 3a5f18b977b2d40b_svenska.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Svenska.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 692a55f3a8b0d2240679a9a8f6cd8b83
SHA1 2e58faab3b35f2c36f391e677932722949b66f8d
SHA256 3a5f18b977b2d40b832e362d5e3db7b5a10eaf7ddba793b830b60ca02fc7a9b4
CRC32 3BAB3F87
ssdeep 48:WavowZsfFXA9JUCFRQijv1BMTZKNQgXVynztV9QmqAUaxMxviysDHO5Ltg60Kg:WavowEFw9JUMRQixByZaJV0zVxqAxzyM
Yara None matched
VirusTotal Search for analysis
Name 72e437c91cdca423_white_apple_clock.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\White_Apple_Clock.png
Size 12.2KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 18b08fad1bd9bd1098fc3772888d36f2
SHA1 b7a44f8be157ed798b1a1b9cb2d56e5761a2b481
SHA256 72e437c91cdca423fcc9f7afc91dfba616157bc2ab344590baae62b75089f19a
CRC32 A9B7BCC3
ssdeep 192:WSb0V3Zxh1e7NN+aOZbEOMqy7wF6wYpk58VxjbqFS1VqmxVQLSopM7C2HUv5oxzR:5AVzferOZbbpUC15KoSPxgM7CMW5oDO4
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 6cee1dfda69c5d1d_unreal.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Unreal.png
Size 46.0KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 200 x 150, 8-bit/color RGBA, non-interlaced
MD5 d483ffb9842a8f0a99f70376253fd45f
SHA1 351350abc3974b4ed94cb8adc11ef057be9f71d1
SHA256 6cee1dfda69c5d1d301919afe55b02954dba639ae118ebc446e32f41359ba005
CRC32 E2963F0B
ssdeep 768:iEIQli4ubch7Y6jAj+lFOf68cc3NWQReu8jmJaa4/ImyJi7RGF9kepuOOdY74G:mX4Ge7JE7f6/ONWQp8jmJa9/IfJmEclw
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name c241583b8b385499_polish.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Polish.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type Non-ISO extended-ASCII text, with CRLF line terminators
MD5 6dac613d6c6d0a30beac1b1536e051af
SHA1 faf8f9ea6e95a1177b62e10cb8d9e3bc54f5f8f4
SHA256 c241583b8b3854991d37c399d82f71994f20ea961054fa94006815d72b713507
CRC32 23DF7CA7
ssdeep 48:LtjgkeiQhyCSJsZmDnami9fdB2CLLIIDj/I1zICfonRF1XOzYF9x2bL1aCFr/f:hMgCSJamrami9f3jHd2ImonhXp9x21a+
Yara None matched
VirusTotal Search for analysis
Name aa2d6050b1b0211d_widestonestudios.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\WidestoneStudios.ini
Size 982.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 0b235dc651e778ace561ce903e1bcbae
SHA1 56aad578090cbc90b8f760019fc0339175988e21
SHA256 aa2d6050b1b0211d43ad6bc919e239b42c9a361fcfc07995f470f3ff3557dd75
CRC32 42AE45DC
ssdeep 12:a4EqmYvrrijpJTpb27XFPVGRXFdnXFPVJ99XFPhNhXFqA2kBIok9Gst81M2qYKcy:BEErI1MTwFBP1rfEk5CGm8Z5kNOi
Yara None matched
VirusTotal Search for analysis
Name 051468a847913306_earth.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\earth.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 d4c8bc1c07c0077783e15664badf33e3
SHA1 ef27b3ae33d84581098c96384784282e090afac1
SHA256 051468a847913306cf9fb5dcbf17bddab5ac36689dcba6da0374dbbb5383b6c0
CRC32 1198EC5D
ssdeep 24:BEQrGXz5lrUBRSTOLX01rfPkp+dGm8JiX33NPeibQ0Wd9iBxLuQI:BzqFlQGiEdGmxtPBQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name f375dfe125d10a47_omega.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Omega.ini
Size 921.0B
Processes 2552 (twtyoe.exe)
Type ASCII text
MD5 039055d6e6ec2f827f2144d2690ba58e
SHA1 f8aec1f29548cd3c825aef43bfc6fff9be8b91e7
SHA256 f375dfe125d10a47f758f7dcc26a0e0b69798516e8872a0127db465ea2f30f84
CRC32 13F53A7D
ssdeep 24:BEurZuC/Tzer1SfPkLKpSLgGLTIZKgNi0uGUnn:B9kb+SkG/pAUn
Yara None matched
VirusTotal Search for analysis
Name 3a615f5afdf35923_indonesian.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Indonesian.lng
Size 2.2KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 93acabec2dafec5e819d4adfbdd86429
SHA1 7459019e4db35d21e2494432860ff94ba11ab498
SHA256 3a615f5afdf3592336bb992b8176a702b7ce81aaba0cc13f7192e57023a973aa
CRC32 78321874
ssdeep 48:S7Ikp8cURun1XREJ7aTBHkRAfdkkDdOhcjSDEnb4rt6VwTu:SMke7RsXREJ7ckk5SGb4wVwTu
Yara None matched
VirusTotal Search for analysis
Name 2b6eed6932c65f8a_bahnhofsuhr.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\bahnhofsuhr.ini
Size 1.5KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 ba768117b0ee7dcc4d22d0cf34f17177
SHA1 048df18f592eb751dc8094ba82bc77a9ec7e1316
SHA256 2b6eed6932c65f8ac44e36d62c4bbed226db938acb6ab43134e756f5f85de943
CRC32 50EA8931
ssdeep 24:BE8rGXE5lr9BxjTJaKhVY/qTORXFB01rfwkpWdGm8bCi51PgibQ0Wd9iBxLuQI:BTqyllTJfgLFK3MdGmQ71PXQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name c9243878c5b9b666_default.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\default.bmp
Size 43.1KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 121 x 121 x 24
MD5 15eaa774ac3848a3b4dda0e66f5e9287
SHA1 a3df74fd4ebe8a46d301e27e295082cc4eba3c39
SHA256 c9243878c5b9b666681d16df368eb1532a5605701a25aa6121f3d5cfc7189c8e
CRC32 8C07C048
ssdeep 384:bTjuQGkjL9f2ulV12XTVv2ENp8JAoa1137h7ANbUx2:njXqukjk/Jc376NX
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 7608128e882e3a34_ukrainian.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Ukrainian.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text
MD5 d10e2a8bcccaf9eff46d453e6fb127d0
SHA1 7c7a5c843c6b8fb615cbf30de329a1505276450c
SHA256 7608128e882e3a34cfc48a35da9c2f1c77bd07b491ee4bd1d6d48bb425cb68bd
CRC32 C38387B9
ssdeep 48:1liKJBTGlVWryPQ42xZZW8KVIFND5i394wtoPlnjp3uPAPxM:1liKnTGlVSyIzZW8KVIFtwZoq4m
Yara None matched
VirusTotal Search for analysis
Name 038edac0fa25b829_blue_sphere.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Blue_sphere.bmp
Size 43.1KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 121 x 121 x 24
MD5 e7aa8136a3ab665606cf7c759a90b44d
SHA1 8679df46ff5f6a5ad64ef2c3942cfd3a6c0d6b6e
SHA256 038edac0fa25b8299b05657ace4541dbf1363598d1992ba09003625751b58710
CRC32 4EC6B1B7
ssdeep 768:5UgVAiVbt4DDDPywwDu5QQWdkMAlCy+eE8sN7qX3sUcQN:5vhMPad+loeE8rHzZN
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 69e4cba68588981e_aquab.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\AquaB.ini
Size 962.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 1a89edbfd22ba1d75dd1b647d14acf19
SHA1 e2b42f0a5751be735f9f1c253b1054dc0a21818b
SHA256 69e4cba68588981e07949cf2b90d506f7139e5ddeb0922d84abfecb6ada8d666
CRC32 FBCD2B9B
ssdeep 24:BEIrIA83TORXFB01rfjkpWdGm8xiF0ZJGi:BzucFKuMdGmEZJp
Yara None matched
VirusTotal Search for analysis
Name 093e1350402900ef_aqua_apple_clock.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Aqua_Apple_Clock.bmp
Size 35.8KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 100 x 122 x 24
MD5 9ab412a79776c5575eaac0d8cb36c294
SHA1 b8bd1945591a00235f5c8c80076f7b54c421ae4c
SHA256 093e1350402900efaee414d0506425a690a4eabcfd77a78a1979b2e072fdb083
CRC32 2F186258
ssdeep 384:ovrz7c5apfURSGfJJsvMOO7WOhc4tHwOormPeJ7bEnb6f1ofnpapYR+MqV0yT:AZUzVOO7WODtHwOormPPU4nhuVfT
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 2b885590f9c5cd14_blackballroman.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlackBallRoman.png
Size 17.8KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 129 x 129, 8-bit/color RGBA, non-interlaced
MD5 732674a58e6e96725158ab71d39d1af1
SHA1 19e9fd5080fd624a0ba53c23be8939166431fe55
SHA256 2b885590f9c5cd14accf5066e444edeb4dd5a678a278401ebe60422e93eefd18
CRC32 48D1F5C9
ssdeep 384:+RTsz18O1aVoTRG/gB3OySclWba32Z58aPY5I2YelngpOILTc/61ENvt:sm1TootG0Oy/WbqlFI0y1EBt
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 35c6e7d3b9bf347b_marblemin.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\greenmarble\marblemin.png
Size 4.7KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 117 x 14, 8-bit/color RGBA, interlaced
MD5 e4f18584a1443e393889d6b0725e69b6
SHA1 943a2815f066d5c44777eef80d0978ffa84a696f
SHA256 35c6e7d3b9bf347b696eee60a2196f10355c07f132d4ac9be48191bd876335ef
CRC32 12BEDF9A
ssdeep 96:ytePcbs8T/pKuzqSpOOTD6IZ8mE10A1bHb3GDfxkwfK:x6TT3uAxfZ8n7bHb32U
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 698a1a399e48fd08_octopye2.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Octopye2.ini
Size 1.5KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 85653aba4507ab8f7aa3b19c5b04694b
SHA1 ea5411f08d9e1e2242d8527e0a18a2dc9c1a5327
SHA256 698a1a399e48fd084fe2453458cea1f87fe6a66cacc18bae34c5c2aa4dfb60e0
CRC32 F7901EB7
ssdeep 24:BEGrGXz5lrANhjaKhVuTOLX01rfPkp+dGm8JiX1PgibQ0Wd9iBxLuQI:B1qFlWhjfiiEdGmx1PXQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 40a519f829558e1b_woodhour.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\woodone\woodhour.png
Size 2.2KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 40 x 14, 8-bit/color RGBA, interlaced
MD5 2b3ab55ee12a47f5a20f8cfa2d46724b
SHA1 1fb28f49ec9d8f2b7e90eef82cfa48c5b7bd8687
SHA256 40a519f829558e1bd12c88f891125420079d40ff3c10b5940724f8d27d69d4b3
CRC32 21AACCF8
ssdeep 48:LLDh2CM+hIEWlV2mEGE9cx7g+SNpWmefyAZZJDrS:LB2oe5lVEYx7hSNCf7Zfe
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 04b44bd2f0d96d81_trumpet.mp3
Submit file
Filepath C:\Program Files (x86)\ClocX\Sounds\trumpet.mp3
Size 17.9KB
Processes 2552 (twtyoe.exe)
Type MPEG ADTS, layer III, v2.5, 24 kbps, 8 kHz, Monaural
MD5 a8543f9f3bca2d1d1e610a2255644ca9
SHA1 a94b4154825bb1eee6704fad78afc4ece10bbcce
SHA256 04b44bd2f0d96d81475f9e5d18c20aa70b37c77f1f60570ff448da25a9c78754
CRC32 CC21ED33
ssdeep 384:O4aEJEp87W0A3vAADh+9gZCh4UzWEuZ8l9E9Zsjjh3m5:O4Hh7WL37z6zWEueb3Q
Yara None matched
VirusTotal Search for analysis
Name cbb73b23a5ebd3e5_nskEE98.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nskEE98.tmp
Size 700.6KB
Processes 2552 (twtyoe.exe)
Type data
MD5 f0a77c42c627fbb5d33348baff778006
SHA1 a2c9809d474bd2fa438388086624fd645c3429f7
SHA256 cbb73b23a5ebd3e5d7199e2fcbfb034ebd987230b08cf1e722e7a9a7f052c9b2
CRC32 9E89E2EF
ssdeep 12288:3Zl08AEe1E6ZeT7FWh5K9YYEeK5f9ZUM/HVwWRFu6IXOIVQj:QREKTZeT7FWYEeYBwp6yOZ
Yara None matched
VirusTotal Search for analysis
Name 8d47c549094f6868_cappuccino.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Cappuccino.png
Size 9.9KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 140 x 140, 8-bit/color RGBA, non-interlaced
MD5 399b9c9dc36ded079b004fac8a2747e2
SHA1 769a7a703e83fc62357e8b66017074c911a0616a
SHA256 8d47c549094f6868cddc13042e2136318feb819cdd3090c5804a98bea59fc389
CRC32 58C38261
ssdeep 192:apbPCmV6zP1UjFjRWkIt68pM3dBvAgc+vlhWH65iHWRUtDOQbHy5RkcP8zY9pz:apb6TpUNRDsYFvPEHWj6cPWo
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name c07da73ed598a9e0_ballclockamber.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BallClockAmber.bmp
Size 31.4KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 104 x 103 x 24
MD5 13b2cd8ac7c2041757e7f8133f3615ac
SHA1 421f8e88710e56be792b4e2c5cf7b80f2df9fb5f
SHA256 c07da73ed598a9e0c3064791984360b211031cac9b42a42ec50c1eb7e5c12b3a
CRC32 B4EA07A6
ssdeep 384:Ds2SUYkFxoF79oRKLcX/uWL8Owlk75v9h2y/rrftfLDdOKVLB0lGuRsUxlIB:g2YQXRKL8/wM1Yy/rrftjPLB0wuRsSIB
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 73dafe6e6fe8c0ca_violeta.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Violeta.png
Size 24.3KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 176 x 176, 8-bit/color RGBA, non-interlaced
MD5 03b13207e96453a1724e2c86844d6f03
SHA1 60ebe3929d936a6df44e80ae9db5e061ca41d555
SHA256 73dafe6e6fe8c0ca6f689a899cd704ae26b7d35f494a7fdcab895c774afaf17b
CRC32 547127F5
ssdeep 768:NLPppFgWbMSDrW/a/e/mbWfMpB3MXKlKQ:NDLASDr+myiVMLQ
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name cb30c8527bd4938f_nvidia.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Nvidia.png
Size 50.1KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 180 x 180, 8-bit/color RGBA, non-interlaced
MD5 76a66cc455fe13cc78642306b6b0ffc5
SHA1 ec2239dc12a29f2e779cf8e7d5c7d0d11e72f050
SHA256 cb30c8527bd4938fb783e767294c729da016fe0fea5ff77537648a7c93ea6f07
CRC32 3449ABC4
ssdeep 1536:1UgYGQi4Wwa/oNQNl7rZm18uE9UgRt3Nx:IagNql7rZi8ueUgRt3Nx
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 953af43628ee6880_isink.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\iSink.bmp
Size 35.7KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 110 x 110 x 24
MD5 a7067fa4cea0838fff9ed1c329c02a10
SHA1 cd35e731c2c95c5589c7f612a4438719018422f6
SHA256 953af43628ee6880a3d574dd0a167f58e7cfa4124f66a82bdc9554f177e229bb
CRC32 24225452
ssdeep 768:1MVcHjhp9uXNffJo8wYUxkM7z7M0L6lfjnjZMRi:vDsMCXMg
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 808986ba3ffbd5b0_hebrew.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Hebrew.lng
Size 2.0KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 e312627e571323c7805473d7c8a6b3e5
SHA1 eb9eca27cdebd2984b3b4fce6279731ec7c40ef3
SHA256 808986ba3ffbd5b0befe6c8cf4dfd5578d138b5569adf7dc1c41d32f37542d81
CRC32 B06491C7
ssdeep 48:A+UFyubnHRyCv8TzCVoL29Vg9mAsMeoXLyh+y/5WnRzuPCnXTu:nubHpUPAoL2VgLsMeoXLT+5Wno6XTu
Yara None matched
VirusTotal Search for analysis
Name 6f8806a904f7aded_arabic.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Arabic.lng
Size 2.1KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 b0277fb1e01f2c417ac128a7e683b81b
SHA1 4265377b929a15d510a6dc07e2c3986751d984c7
SHA256 6f8806a904f7aded9c217c8a7fa5f38f13ce0bb5f5a21e0ccb74612c9c9b3eb5
CRC32 30870794
ssdeep 48:sf8rC2JvLPvHQbQbQ3ktvMpVf5+rwx0w5GcgAuPCnXTu:i2JPvCQbEYrelgT6XTu
Yara None matched
VirusTotal Search for analysis
Name 7d4cf4c12caa2980_klokje.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\klokje.ini
Size 645.0B
Processes 2552 (twtyoe.exe)
Type ASCII text
MD5 6eafc943cfb82ef659063b558ec46a69
SHA1 957bc898591918cb6115ec956b736a21f218e3cf
SHA256 7d4cf4c12caa29802e666f1264ab9c6e273ddbb33e1b53228926b5a8c73763f2
CRC32 5867A65B
ssdeep 12:a4Eqmz2rrp5pjpuDtOpCRWWh37L4a2Kg1nea90KU9LlTYQUywcG:BEurF5buxOQW8L4ZKg1eY019FUZn
Yara None matched
VirusTotal Search for analysis
Name 96e532eb349deb34_romanhour.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\roman\romanhour.png
Size 2.8KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 80 x 10, 8-bit/color RGBA, interlaced
MD5 d51150b7fa07035717f4007284a73c6e
SHA1 62825d81670244a1652fef4573f6b21fd3e61caf
SHA256 96e532eb349deb34228ebe3321e0727c3638a0a4f80e7700760c08a436b13ddb
CRC32 008A9A27
ssdeep 48:rmzGRbMWjvJsO1a/S+2OVag8MQBAYQ7f0wcGrdQiAn7y0Jyd2suRYhZB:r+GtMWm7/aOqBAYQRrSiA7/Jy8NRM
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name d338c477d7542d75_hourhand-7.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\DarkCrystalBall\hourhand-7.png
Size 997.0B
Processes 2552 (twtyoe.exe)
Type PNG image data, 260 x 9, 8-bit colormap, non-interlaced
MD5 ddc1cb30b5b35268f7c85e9e0f2f3039
SHA1 41808dbe86473a57f1f327bc4740eaefa9affe4f
SHA256 d338c477d7542d753c2e919f66c50fb53f8dfd22ae22d4e54a90db895ef3e433
CRC32 5AC43DD0
ssdeep 6:6v/lhPkgm0CcgCMkuldXGrr05PMnP8wE3BEdBNmoSaRRClb4Ja96mMcKhTVlljp:6v/7sCE2URmP8RBEdBNmoR04Ja9t6Tj
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 9876cbe95d2bca6e_black and steel.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\black and steel.png
Size 7.9KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 150 x 145, 8-bit colormap, non-interlaced
MD5 747303365a184814658774165bd7c883
SHA1 93bb4d77704884f2da950f68aca59f1e60ae9d98
SHA256 9876cbe95d2bca6e45f20be2c75b4425dc434ff5e56df4f7db1985f679bf4056
CRC32 293DC806
ssdeep 192:E6s2mM8JBwjL+2Cze54iq+LMpWZizMVHGzRmz8Lu7vDpri15n:ZSMswf+te3q+o8szRmz8gvE3
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 53b13873417183ad_darkcrystalball.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\DarkCrystalBall.png
Size 18.0KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 259 x 293, 8-bit colormap, non-interlaced
MD5 7040cf8badffa9d06acdd6ebdc09ee1b
SHA1 fd1dd414926151a3ccf845225bd42283dabf666e
SHA256 53b13873417183adc06fa7a02f044c4be9ab7a34d7572d487b23df1dc08c8292
CRC32 341F4631
ssdeep 384:8XK3pDi4J8D6x2f07PdcijEepIP8n3ImeVEvXoGlQVcr:bDicTD7Pd5HIP83IxV3Glf
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 3e693bcd12d1beee_apple.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Apple.png
Size 21.3KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 17a826cf3e44be13dc3d3077bce71456
SHA1 2b4067840db9403bc4dff49dd0b4cbc686830003
SHA256 3e693bcd12d1beeeae1a419286539dadcbaaa970dc39ec0e4c928431b89684f0
CRC32 7C91C3F2
ssdeep 384:5tGsRrRU7jBNZv2+ytf2IbDeKuY2PDuRuxm6Cilnov4fsxqZlQ:ukRANuHlzHVa0i9R7sxz
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 887ee063f618d73f_greek.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Greek.lng
Size 2.4KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 9ca688f0e5f418ab6d24df39ccd336d2
SHA1 ee45bc8eeffad60d1f7f54a9894137cab160bcea
SHA256 887ee063f618d73f46b7ed49c6a36ae0a117cb060a6af0986a5e31b7270b9d92
CRC32 3CA459D8
ssdeep 48:fQQV08HDWRNNxzWfwVDmC7yrdxKInE/nzjsGUM+GGAEIHVGVqYNmZ7+5a1PTu:ruNdwwVyPBxhnE/zYGh+GVpGVBei5a9C
Yara None matched
VirusTotal Search for analysis
Name 0ab5df5226313d01_traditional_chinese.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Traditional_Chinese.lng
Size 1.9KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 1087c3f3ddd9cc72492c6ce37579d069
SHA1 3e715a01456d0421d6c407538a69e670cc18a512
SHA256 0ab5df5226313d018060b308af3db6c5c9cacf7a1985607c3542380268076f56
CRC32 73E2F196
ssdeep 48:u8hbLlIx/SDsjUqJPgocfhc65yk8mGaEQNcbqCgjkpRqM4LkXNfua2SiuPCnXTu:u8llIx/SQ4qJPWfhc65yJAElwkAkdH6y
Yara None matched
VirusTotal Search for analysis
Name bc8d35bfb7f76801_negro.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Negro.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 8f3b521e705b5627f46e7b0013ff6c32
SHA1 022116186dbde488c76a3576313b6a85e8d867e2
SHA256 bc8d35bfb7f76801fc490b94ccc9f7ee56ed46ffbaec4c6a2863360a11905685
CRC32 FBAEB75F
ssdeep 24:BEGrGXz5lrUBRyTOLX01rfPkp+dGm8JiX33NPeibQ0Wd9iBxLuQI:B1qFlQmiEdGmxtPBQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name c61f93d21895b392_klokjehour.hpng
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\klokjehour.hpng
Size 1.2KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 34 x 8, 8-bit/color RGBA, interlaced
MD5 3ce465c5a6fa15ed85f3d78b5d9a669a
SHA1 d9eb7392ecfb586cc6ba793f44e3ebc6c68d15c6
SHA256 c61f93d21895b392ca21395735d01d4514e279ef4ba7a34cc20decd1b818ecbc
CRC32 5FDFDA0C
ssdeep 24:Vq0kBWKRD/SdTcFMjulNQIXRI/XlvSF+2hAJO0Q28cFkoVHqelN:Vq0Op6dTcm6KuIfE9hAA0Q2NFhL7
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 28e430d0655ec2f1_uhr.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Uhr.png
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 200 x 200, 8-bit colormap, non-interlaced
MD5 3d8e36965e80f589e391048b6e451828
SHA1 24adcdaab515189f8b7e354a414fc9a96458e609
SHA256 28e430d0655ec2f1372272ab4de2a7bce4d3d068a6c4ed3c1d4fa38c7c5eb9f2
CRC32 37A7C61B
ssdeep 48:u3LCLjFmREUcOLr9MoQw5QGojHtHLCZdp37ri1luua27zP8V75m9qz:ufjL5MoQfGkNH2Zdp3i1lujGg
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 424bf20cecbb097f_portuguese.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Portuguese.lng
Size 2.2KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text
MD5 dcd35241bcb58cb9a495aebbee280e77
SHA1 a70e368a9e2e5fd002dca142ac7c357bb87b4aa4
SHA256 424bf20cecbb097f714fa9bd12b4ea6ec4902f6229fec88c80ff0a28f6e91bcd
CRC32 0384CA79
ssdeep 48:9DL1hlqQSf339bGvpmxNOp7DIPHCErjK4QvX2UXaUJkwwIG:9DZnqQS3NbCmz5rFQuUhJTwIG
Yara None matched
VirusTotal Search for analysis
Name b379e31a40387b9b_weemsplath.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\weemsplath.png
Size 64.7KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 228 x 228, 8-bit/color RGBA, non-interlaced
MD5 e4309650933f9b7f4f7bbcd07161047c
SHA1 0c4cbe0f0d28b3ba2c2aed2c555b5b284b86bfa4
SHA256 b379e31a40387b9b80c7d7196b15e77921ecf612ff3b3de114da67e7f6d99612
CRC32 3BEA996A
ssdeep 1536:h6id/CGLVRKm+KOx487IQdf8WCLAl/QMJlW3cyb+C4q:hDxCG2ps0u9ArWkG
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 1a93f6ed5578452b_earth2.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Earth2.png
Size 23.0KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 99 x 98, 8-bit/color RGBA, non-interlaced
MD5 3d11a2f8562dd07a4d1c0bccad601535
SHA1 0f123de33890fd36a1e11a7b8e4f15ca68bdadcc
SHA256 1a93f6ed5578452b808bdadf9a19c889d262c2264c98a204aec82cfd35eda4a7
CRC32 45A1BC59
ssdeep 384:fG3wnDvFur/1BzxGeMzVDrTYk4cOLS28OG55+cqkem85Y2YErO5nEOmYKyhMAiw1:xnpu5DczdY1cOHmed9y5H7JUGf
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name e444253e619e3599_default.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\default.ini
Size 1.5KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 d90f48df60acde7569bedc4c4b5c7ac3
SHA1 75229a0ad9d810d292b746d9b2fa04514c509d72
SHA256 e444253e619e3599ab17bd1927911b8f0362254ef469886edb53a6fae9c580ce
CRC32 F03483E5
ssdeep 24:BEZrGXE5lr9BxjTJaKhVY/qTORXFB01rfwkpWdGm8bCi51PgibQ0Wd9iBxLuQI:BkqyllTJfgLFK3MdGmQ71PXQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 93c5d3a982e8bd1e_ballclockaqua.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BallClockAqua.bmp
Size 31.4KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 104 x 103 x 24
MD5 25f334f4a79dad4448c324bc0200f02d
SHA1 306892204ce74fc72e197788e4ed03270574e889
SHA256 93c5d3a982e8bd1e17579d41a833155e5bec92fcf2063d6e14b9f7e8f6fe4613
CRC32 6857FD26
ssdeep 768:Hc0SD1wzFxbmt9DT8vkbZKHrI2mmLyKBRygYK0s:80w6ZiSVlbyKBbYo
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 8633dd0386acb524_original.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Original.png
Size 18.4KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 e22608fecba37804abade6a53491d5f5
SHA1 dc6332d7e549a5d0e784125dced56b029ef0f902
SHA256 8633dd0386acb524e19decb2546525086c13723eeaca26daf16a91507a142c97
CRC32 B8710DFC
ssdeep 384:f6sWIpV7vdV85P6H1LNCaP3TzMVAr/bR5fy/GPr5Kzd99qjEHwyxZ6rlgSS1Gh+n:nWyV7L2P6Vx3TzMVAr/NBy+z5Kh7wEHb
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 79dbbb2de47a367b_bosanski.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Bosanski.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type Non-ISO extended-ASCII text, with CRLF line terminators
MD5 4dad1a9bfcb103d54b06909abb097536
SHA1 b4d125726c841fdbe717be04fb22843c2fdee837
SHA256 79dbbb2de47a367b70646dccb4af1dfcd56a9adcd4959d82612cf6889b1d8cf7
CRC32 CED880DB
ssdeep 48:OeeySYKHbJVvLmhXm6NPL+Y4EGidNoiqiEUygVMg+a3kGjkIa2RFmk4SaTv:OeeySFbJhLm86NPL+1bwSPU50a37BVI7
Yara None matched
VirusTotal Search for analysis
Name 80d565fdedc4640c_ballclockred.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BallClockRed.png
Size 18.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 48c63e4358b3c3747f617a6b636acd74
SHA1 e22eb43b6e4eb4bd758bc3f8a07cfd4589a2b616
SHA256 80d565fdedc4640c7f0c1086b53b0741449770899122ef1e4bd718ced53f2523
CRC32 2E37DBB7
ssdeep 384:56UKEwcqBzASUGvcXbSSnUWCi6WExgCY9vgHA:Av8qBzAfGvcrSSnUX3XK
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 3796cf0105972a78_blueballroman.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlueBallRoman.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 d7bc067beb09ee29e2ff239b39dbc1fb
SHA1 26b5b966ee8872a2cb2fd038a8d9448826e77aab
SHA256 3796cf0105972a785f485135ed1429b778ec9a3549a24eaa2796035f1d84e9d8
CRC32 33328410
ssdeep 24:BEarGXz5lrUBR6TO5P10X7kpFgIGIo8Jim03NPeibQ0Wd9iBxLuQI:BhqFlQP1IIGJoYPBQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 69274cc505982e37_bigben.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BigBen.png
Size 50.8KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 254 x 254, 8-bit/color RGBA, non-interlaced
MD5 20f7051c41230a7c304ae9fcc2b1672a
SHA1 6f601c41ac367325375df553ec8c3e2907a4a6ef
SHA256 69274cc505982e37f5cc1cf478775e4fe5cece83ab1c836e924c4fbc702391cf
CRC32 0F0E26B7
ssdeep 1536:ycHNm1xLbHcKpCtCvfMw3kGMZ2Bc/p8Xp:Ftm14C30Gw2Bc/p8Xp
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 7e1947aa387e9e85_jaguar2clock.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Jaguar2Clock.bmp
Size 37.1KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 112 x 113 x 24
MD5 1fb082e898c2dcf91f26d998690b30a5
SHA1 87a4dc0d6f778717bb9af2e2f2b7853cd1cea6f9
SHA256 7e1947aa387e9e85b3e8d83eb850dd26c47c301b4a7f9ccbc098d0c902996f92
CRC32 009012B6
ssdeep 384:mhipaBfLvA0hW8KqcE/iq4UREimrRPwavK:KipG/W8Jc7q4Uaif
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 4298489ea4e99bb8_turkce.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Turkce.lng
Size 2.2KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 af5bf71bf65c85430f339fd263d19e60
SHA1 5004e292e76559c176a0a2bda06fdd75aa0788ec
SHA256 4298489ea4e99bb8cf68c0051312d10424e17026a82a868f9fbe16014244100d
CRC32 58C2C437
ssdeep 48:vfuHDUxQ2FPl6UoFzHioqkIqKpyLm50pN+b2DFFakIss2q8WeHSwTu:vfSgxQ2FtxAzfIpyLHN+qPm2C6Tu
Yara None matched
VirusTotal Search for analysis
Name 35a3e61e917a23f0_romanblackhour.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\romanblack\romanblackhour.png
Size 853.0B
Processes 2552 (twtyoe.exe)
Type PNG image data, 55 x 8, 8-bit gray+alpha, interlaced
MD5 042882177aab65a2b945b6bcd293c7da
SHA1 5c7588dce0dc34cc5dc4d4bef84ec738dfee6860
SHA256 35a3e61e917a23f068d2e4b3c2e7503b1c2bca5d610f4a106bf686bae441670c
CRC32 196D65C2
ssdeep 24:VqpER+AftkhOqlEWJYK+HGhF4oXzpCkZix64h:ApEUJYe5JY4hF40FZZG
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 8de577d96c63e9b9_nederlands.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Nederlands.lng
Size 2.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 c817194b9bcbd2d5323b0a6d7ef7c56a
SHA1 810c07d0d0385c428d5d1b4be7fc00dff3dce76d
SHA256 8de577d96c63e9b9e2d7211bc900718f872c6ebe3979a83f46876fe768b1aa09
CRC32 963FAC45
ssdeep 48:fm2ZJkrpaZ4DbqfTHD2E5tFUHzRKZmu1dE69x279IIjHim90gcqID+mTu:fm2ZJkESHq7FqRKZPZ9x279PjpOY5mTu
Yara None matched
VirusTotal Search for analysis
Name 2deb821546723ba5_aqualarge.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\AquaLarge.png
Size 45.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 176 x 176, 8-bit/color RGBA, non-interlaced
MD5 fd4e0d5d5a8a964e2b25d1cfebe5a4a6
SHA1 ca0a5d1f4d0d7910f6677113710278c766902ab1
SHA256 2deb821546723ba504dc12614b388cfbccb785c74d7c5ec04033e66642187771
CRC32 9644972F
ssdeep 768:Mfbx5EU99lKeGQVYgofZgJTe1mY3FABwXRfrd5Z3H0Yzf5VrZmX:Mft7seG3g5e1mY3EwBR5Z3Hnj5VtmX
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 3b5aecd81b46aaa3_dsx4.txt
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\DSX4.TXT
Size 52.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with no line terminators
MD5 cca118da9d40aa92b4c49ea17402e071
SHA1 933017121e0b936b1ff2be7e3a0bab114540e8d7
SHA256 3b5aecd81b46aaa3bedad81de9a9b988f80b9eba4552957500b842e61b27570b
CRC32 509097B6
ssdeep 3:FERjVM0lLLiRFQLZQ:FERjzR66Q
Yara None matched
VirusTotal Search for analysis
Name 858d8ff1f4f91c37_groennekugler.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\GroenneKugler.png
Size 17.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 1600 x 900, 8-bit colormap, non-interlaced
MD5 b32a0c1c5d6ffedd2af545f0c774cf67
SHA1 a16b334b7b7a19b2f04842c2d586a7d14e78385b
SHA256 858d8ff1f4f91c37d2034d3e39fd1b7b9222f63199a92f133766d0c8d03aff41
CRC32 02F3AF92
ssdeep 384:mp5XLNVMnsvqqyUuXWEDgdYpUN8y5t0awON+:m3LEXDWEO600sN+
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 5c2faa546c5860e6_wonderglobe2.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Wonderglobe2.png
Size 20.2KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 95 x 95, 8-bit/color RGBA, non-interlaced
MD5 6c8f406a6aa5dbfc6dd07e10842867db
SHA1 b2e7fa8aae533ed129f3a5ba1733a89a5ca42105
SHA256 5c2faa546c5860e69f39c7bcf97d67f473f3301ee19460b9769934a946fef390
CRC32 C2E16EDB
ssdeep 384:USxy+3/jChO3XBcz2dlqj4SH1kp+6tqmBbBrf0EunL3a2OtT89UvEPa4DRnlO8za:vx//jJ3Xazmg4SVbgzBran7J8TFj4DtY
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name d0df0ce0e36de4ec_mickeyclock.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\MickeyClock.ini
Size 678.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 11e9efe0037da4f0fe989ab84830ba3d
SHA1 ca50ec23fcce716d006a4bf0bcb12d24b337154b
SHA256 d0df0ce0e36de4ecc1d6b132cccba792033d86cb8bb5c93c8bd9998bb705c56f
CRC32 08D3A1CC
ssdeep 12:a4EqmYLrrcR5pjpJrtOp0BP5oHy4yjQp2i0dO92HOFLlTYQBSwcz:BEQrm5b7Ouh5obykcix4OFFLi
Yara None matched
VirusTotal Search for analysis
Name 0a74fc0ffa8dff0d_longclock.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\LongClock.bmp
Size 37.4KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 122 x 104 x 24
MD5 224d809351eac5981a93d5f78f325a14
SHA1 a28af5df1908b2527e827931849d7891f6b2e508
SHA256 0a74fc0ffa8dff0d8a080c3306ca98707be271e02458879ea533cca5bf43c3d8
CRC32 70544C39
ssdeep 768:+SY8aR+Fh1mCcbLhN5PJsmU9exbK1UUWkOuRuaUivtgc:6V2zmCcbzPsmZhK5bRuitx
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 8206494360928e9b_minutehand-7.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\DarkCrystalBall\minutehand-7.png
Size 994.0B
Processes 2552 (twtyoe.exe)
Type PNG image data, 260 x 9, 8-bit colormap, non-interlaced
MD5 938cc637343645dc9c62b076d5136eea
SHA1 aa97737ce6ed4a6467565ffae188b8065e3584dc
SHA256 8206494360928e9b8567fb00b05249b2e484cbffe61297ce3aab13c19319f657
CRC32 42D50752
ssdeep 6:6v/lhPkgm0CcgCMkuldXQPMnP8wE3BEdBNmoSaRRClY4bbGVic1xu67z3p:6v/7sCEwmP8RBEdBNmoRP4bb7H67F
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name cc51c20ef9133b8b_backupalarms.bat
Submit file
Filepath C:\Program Files (x86)\ClocX\BackupAlarms.bat
Size 70.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with no line terminators
MD5 c8bf8f5a39c3cd41974f240de82a0e75
SHA1 f37b3319d1349ddbc34a3229ffe5f567e845c058
SHA256 cc51c20ef9133b8b13f5ddc0464679b81677413cf34a5b70785abfef857367b5
CRC32 B011B0CA
ssdeep 3:8hFgEYiXukHqp2YR3snjo1q5hXIWn:8h23iXzj83GU1qYW
Yara None matched
VirusTotal Search for analysis
Name 0fabbe61f9e6638b_ballclockred.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BallClockRed.bmp
Size 31.4KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 104 x 103 x 24
MD5 e26ad55938ae56feb11b2450a5a02b0f
SHA1 5436a23577c3f33038963c8f44d8bee50dd5fccf
SHA256 0fabbe61f9e6638b396fe35f2a02ccab1af7d2de40e284318565b7983fd58408
CRC32 6DE62367
ssdeep 384:DM7J9t2ORX9hUmbPtJ4T9oF4UeMPNShuK/3mNvQTgUX:w7JPX9hFnoiF4UeMFeum04Tgq
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 0dc9adda1ac844e4_aquamade.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\AquaMade.png
Size 27.3KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 9aae18427a5bf4b00f9ba4a58ae01a05
SHA1 4d59ce4542295d5c2e5b9a9325c6191c3ae25fe7
SHA256 0dc9adda1ac844e4a8c3d5a9033b2ee35d1afc81988faa155e88308aa16d9499
CRC32 4FBAB71B
ssdeep 768:xp4+24RPlPmseLV72TgAUjwVq16Z9Xd12XIVVL/wUjJ5Vq:jpHheh7fvjwV2m9X2O/wWJ5Vq
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 8f8e24924515ff1c_aqua-clock2.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\aqua-clock2.bmp
Size 37.1KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 112 x 113 x 24
MD5 fad209473000f30fb8ac132e5addbb94
SHA1 5886423659f1de4d705ba68583c3b36d9a3857f4
SHA256 8f8e24924515ff1cc157405fd35a2dfa60e49558a4e11cae4406d88c75202bd5
CRC32 9A5A84AE
ssdeep 96:mEPBcUiVCRGqKcOnrmGDVNdKh9B+QRGB9Ov7OPcmn:mEP00xRGhQG
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name c0e1c48439536075_ballclockice.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BallClockIce.bmp
Size 31.4KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 104 x 103 x 24
MD5 6c0b705bde7d2afe37253e45524b729c
SHA1 46bbaa392e19944fa0dc67a867d6bab5c5fabe8d
SHA256 c0e1c4843953607594fa2d32ca85bd516d6bf19fdac0c49f6d7c71702dec57f1
CRC32 293AE092
ssdeep 192:DZ8oIe45flGoS3iItFTeQsHyXw7Hmyak1v+1fveN3e9Iy6CGCMV6JgMuutekplCl:DFRSItFaQsHyXw6kIqD0lwhI2uy
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name d1d9c71b77f88160_kirchenuhr.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Kirchenuhr.png
Size 26.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 142 x 143, 8-bit/color RGBA, non-interlaced
MD5 4af2ec664e52978f64f505d6c2ab29b3
SHA1 288c0683413f7e7ad06a868c4da687c073d3a208
SHA256 d1d9c71b77f881609e96467df3fade83d734030101943064d201201ebe3ebbbb
CRC32 C82A627B
ssdeep 384:WHpNa5lfTIYOR0MEvwGYHyEmHH497tvTDo8s7mTHX3cTLmkZR37B4jc23wXDpXGM:6OXgyE1hXod7mjcTLmQ74c2gXVXGwgns
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 81dc5e6439f08ede_aqua.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Aqua.png
Size 29.8KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 73e7b2f60f8ac6fde449861ac5484755
SHA1 ff314467b04e04a70c2bcaf2c5e65c1c7b5d9274
SHA256 81dc5e6439f08edea70408774e1195fb2d01be1aae88b0a157eb7e8bc342dda3
CRC32 03638958
ssdeep 768:3fQkIoTw9vw5VugTvrBRCKbhNE3uJJD1GYP71q:vQ6CIVuGTvhbLE3iYqq
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 7e59083736758b25_alte standuhr.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Alte Standuhr.png
Size 44.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 140 x 165, 8-bit/color RGBA, non-interlaced
MD5 c09624e5a94c36866d9bf05a3c07dd33
SHA1 a98aca5ba10ea2187bf11cc506be2fa893aeaa79
SHA256 7e59083736758b2575545383bb8ed07ef79972d4ed3ab08f78b367528faeb596
CRC32 62E09E60
ssdeep 768:TnOKv1UzMqfrTun4WXmRdkWKGoHfX7Yik3gAv2zMpr6VPtJHj2M4hmH4G:TnOKNyMqfrXjkWKGoHfX7YiInhpr6VrJ
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name c4e752988ea9d300_dragon.bk
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\dragon.bk
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 187f4e9c78ac647ef5c632c9910211f3
SHA1 c0bc244e495b267b294237ebb158689cfe7787a8
SHA256 c4e752988ea9d30089db49cda515fe5b4f460db402879cba941d27f271fde0cb
CRC32 FAD06E4D
ssdeep 24:BEQrGXz5lr9BxoaKy4XTORXFB01rfLkpWdGm8di9MiXGibQ0Wd9iBxLuQI:BzqFluf18FKeMdGmfMiXpQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name a534e20fc73ea320_uninstall.lnk
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ClocX\Uninstall.lnk
Size 798.0B
Processes 2552 (twtyoe.exe)
Type MS Windows shortcut, Item id list present, Has Relative path, Has Working directory, ctime=Sun Dec 31 15:32:08 1600, mtime=Sun Dec 31 15:32:08 1600, atime=Sun Dec 31 15:32:08 1600, length=0, window=hide
MD5 2f43c8c79fe87ab0ccf69254c54f3a94
SHA1 08cc4340fc17c2a3706987b3de29ecf0fe63131e
SHA256 a534e20fc73ea320f9ef66e71006b1807a03bdfb070ab9a6f9067220246042d3
CRC32 C6797CBC
ssdeep 12:8wl0Q02lqqdp8uUXUceZbdpYmp50y0bdpYmp5ucKNUGa4t2YLEPKzlX8:8ceqdO/XuldjKygdj+UG2Py
Yara
  • lnk_file_format - Microsoft Windows Shortcut File Format
  • Lnk_Format_Zero - LNK Format
VirusTotal Search for analysis
Name ce8b62e4d4f14d50_siren.mp3
Submit file
Filepath C:\Program Files (x86)\ClocX\Sounds\siren.mp3
Size 8.0KB
Processes 2552 (twtyoe.exe)
Type MPEG ADTS, layer III, v2.5, 24 kbps, 8 kHz, Monaural
MD5 59966d556e3973dab3fa5b70683c3729
SHA1 9e6a68d02c46f86c17b310a87fd9b6c1c3fc1b12
SHA256 ce8b62e4d4f14d50861eb57f67107556984f06c85f6eb3a6208dd2e42b027452
CRC32 894681FC
ssdeep 192:5bcKdv2kGc5TguhA4i+Xguk4bAhwZbA7HThwkK0N5KIzA9j04cn:5B2Y5Tguh/guAwZbAr191IJcn
Yara None matched
VirusTotal Search for analysis
Name 54991d21c1ea6c3c_thai.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Thai.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 5a008d847d9846db2eb9d84b500fc407
SHA1 f4dbd5725559f1fde3497959f15f8e2db01b9a60
SHA256 54991d21c1ea6c3c3c54fe68daeff96041df96c4ae05e13b300c8e60a8da3de3
CRC32 4122E872
ssdeep 48:Q0QaBfLuSJH+yK99GThN/+5l1VeiOmxzgSCQLQiTpCyB7XgAuP8XTu:Q0QaBfLuSJVK99ChY1V5VbXpCyB7XgTz
Yara None matched
VirusTotal Search for analysis
Name d8ddd4e4f5fceacb_romanoldhour.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\romanold\romanoldhour.png
Size 2.8KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 100 x 13, 8-bit/color RGBA, interlaced
MD5 d57f357bd6ec6cb8e6b4113934c93219
SHA1 d1c3760ad06626d717096d565daa5dd279404aaa
SHA256 d8ddd4e4f5fceacb7487cdc71ddc3e611987b1baccf7110797e2f33726023dfa
CRC32 CA3B6BE4
ssdeep 48:rmLJNMjy7tneNT+ND/whTKkxtYhremTYJCnJwcosFFnmOqdhJe5HLHxZznVnShi6:i3MjmeNTejuTKkxt+reqJwcFFhmTJYLS
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name b0296c84a695fb91_cappuccino.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Cappuccino.ini
Size 994.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 fe5be53d2267788942bb4d382592a376
SHA1 a6b987ca380de8fae09e40a07b1460264b8a3186
SHA256 b0296c84a695fb91f33c65a0b7cc0df52de0fe610f9327cb07f43a288e7a88e5
CRC32 3BD358A5
ssdeep 12:LXe4EqmYrrrcRQBjpJrpqZ27XFPV+m1nXFPVG99XFPUXFqZ2kp0oH9Gst8ZVB2iU:LdEQrmu9rTOe01knkprdGm8ZWiWN2i
Yara None matched
VirusTotal Search for analysis
Name e2c426880eafb1b0_danish.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Danish.lng
Size 2.2KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 1793fd4614d665e1b0fa41cbfe09c531
SHA1 360ccba52499f0b7498dc5e3e87c22f901994ab4
SHA256 e2c426880eafb1b032b70678965628795c5655ab3c97a1f5404dabec3dd1ff52
CRC32 B91C1A16
ssdeep 48:NBTNJZ209IBMoFnjw18YvIPRg85a5QXyKUjFkkaTu:NNNJZ20GBLJw8YvEx0apUjFk5Tu
Yara None matched
VirusTotal Search for analysis
Name aea2e2c6f689c1db_negro.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Negro.png
Size 15.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 176 x 176, 8-bit/color RGBA, non-interlaced
MD5 b2ed7e8fd0ccf0e6b45b3c47cefa3742
SHA1 0bc335e49a4e210a677181d3867ca1342c269b10
SHA256 aea2e2c6f689c1db7caec63bb7d6a1863f4a564560b0c90d145c76b9f3a2d8e3
CRC32 A442C6B7
ssdeep 384:+WRaK+pYK+RSwp359dz+GWW0DlS3dSX45sEHI44bkOvVYD:+saKO+Qwb9d/0DstSI5sA9D
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 420e912411e4cac7_blueballonlydots.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlueBallOnlyDots.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 5acc6f230ef671cd047e46010ffb5782
SHA1 552172f52383e1c286e8b4c9d373165f511feda0
SHA256 420e912411e4cac71f88f0485ad13d9ab40e513979c8c2e820b0ba70a1c9a843
CRC32 11A86000
ssdeep 24:BEarGXz5lrUBR6TO5fq10X7kpFg4SGIo8Ji4h3NPeibQ0Wd9iBxLuQI:BhqFlQfq1I4SGJmDPBQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name feb312b60bcf8cb4_naranja.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Naranja.png
Size 25.0KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 176 x 176, 8-bit/color RGBA, non-interlaced
MD5 6e26841542a025bb86b2bea057b57704
SHA1 ce1a326fb113ac7b0f5a5850f6efaaf35637c6ed
SHA256 feb312b60bcf8cb4a74f95639cca0fc8c0ad71567ebd3a980d868671e5a0c105
CRC32 29CAF9A4
ssdeep 384:izRtQkbn+VtynIsPHlUGcCv5OcTfDs/YipSwz+H0lco7iHTA6ve+O4AypF21w:uLQkbn5Pn5OcavTzZlc1H06mn4LIw
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name a7ac46f2d7c9fea9_ballclockamber.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BallClockAmber.png
Size 18.0KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 c0b3cd6a12d50f9cd681bbaa03015423
SHA1 db1ef651280d3b37a279d1f56bea4959563bd46c
SHA256 a7ac46f2d7c9fea9c99f356a18d4f3d4814da0d93584209c69e8be36bfd600ce
CRC32 918399C5
ssdeep 384:5td1uc5PdIUsIhMmNNRTHzhTjXQKnZVwIvXTY4XhP+e/Tsjf:fdooNlNAmLXZxP+eIjf
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 6cf612f8e25a26a8_estonian.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Estonian.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 84c4d2361103b662bebf68da906d4f40
SHA1 0aa776c9cf78f45212f953a274c4f6c703016ab0
SHA256 6cf612f8e25a26a8fe2dd498df727c4aaccea47bd2ed871edccdd5c074b99167
CRC32 E7426E19
ssdeep 48:HrWjaA54MqKpFKlZx2MPq45Gm38OWuyHVCJ20Qv+bC/gloIGMINTu:hAaH6qH2MPqD48un4p+bUizBuTu
Yara None matched
VirusTotal Search for analysis
Name 5c131d1314bdf05b_suomi.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Suomi.lng
Size 2.4KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 faa5bf602e511ad03ed8faeeec9d40cf
SHA1 1748b8d296b6a6d742ad378befac1622d8845a37
SHA256 5c131d1314bdf05b942583f5d6d1ea2d5659628feadb42f4d3005bdb9982e470
CRC32 B2715A88
ssdeep 48:jAspe44gcoLB3zjkP0FdaJnSp/K2drjNamUPTu:jAsp2gcMjk8F8ABjNLWTu
Yara None matched
VirusTotal Search for analysis
Name dc92936e7f1b197a_widestonestudios.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\WidestoneStudios.png
Size 13.1KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 144 x 104, 8-bit/color RGBA, non-interlaced
MD5 ebffa2ad6f19e5418bb2f65e3b4cf5d4
SHA1 87c70fbb8c6a0f4c83d67320931d23c4a498197e
SHA256 dc92936e7f1b197a209bed51b50c2c274564e22ebdb6889880b58d11df993834
CRC32 88A7FEB6
ssdeep 192:/SD4RQg9vDQfUzRKk44poiF6QoqHK8fdhP1eUBuvuHyQT1BFni6XNPH/xGkvjm:qDN2vWk44GdQoshNeUsxgDni8PHZGAjm
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 56fb2fc2890bafb2_black and steel.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\black and steel.ini
Size 1.5KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 885f743529845bdc1b4c9766fda77d0a
SHA1 478e113115b3958e77076d0f1e2f7cfbcee00fcf
SHA256 56fb2fc2890bafb2324d7168d211b1ddc91af4c869eeb5613f15b2073757c83c
CRC32 D80A3A35
ssdeep 24:BE0rGXE5lr9BP5WaKDihTOh01kPkpFgdGm8RiTm7ib/v7Wd9iBI5auQI:BTqylRWfkbIdGm5msCTiBtvI
Yara None matched
VirusTotal Search for analysis
Name d56e5151c7eb06ad_aquamade.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\aquamade.ini
Size 949.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 96fd9cca4bbb46e48f65ec26e3aa1f3d
SHA1 aea8888332bf8635a1ffdbeaed9e8a632a21423c
SHA256 d56e5151c7eb06ad35a0364baa8d95ddb11700754889c5498dfa6af2ca945888
CRC32 8EE773A5
ssdeep 24:BEQrIADTORXFB01rfjkpWdGm8xiF0ZJGi:BzCFKuMdGmEZJp
Yara None matched
VirusTotal Search for analysis
Name 03d0b14986dd3e58_blueappleclock.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlueAppleClock.png
Size 27.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 674cf0106048dfe1ba8f9afbc3840b48
SHA1 7cb8af5db17da0a779de76cc96f4181f741b20ec
SHA256 03d0b14986dd3e58b69c15979712f323713eb11ccb095d9137a29c5a169199b2
CRC32 E79ACECB
ssdeep 384:5sCbXvMMC03YbV0tj3tx398ZUGY22JbWwlrFijLr+ZBmef/6/xRppPy8/b7zwkxF:/fMx03Oa+KtijLr+Hf/6JJ7zhxNJn+I
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 6def2b26ad82d205_simple_chinese.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Simple_Chinese.lng
Size 1.8KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 fa2ba4997b287ce38f2dbddcd180d4f5
SHA1 521b78583ae110dda52ccacd57848b89b9589fc9
SHA256 6def2b26ad82d20590cdb14ad36a5851f6e2af6fca72efc87c26fe576ddd962a
CRC32 648707C4
ssdeep 48:VlpO2ZDqLqz0Sog9VNQmdZFnU0T2fn2lYQE8cCM4vjvqB4uPCnXTu:zpO2ZDqLOP79zxnvT0nhQpJ9jva6XTu
Yara None matched
VirusTotal Search for analysis
Name d9c00401bf038c43_jaguarclock.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\JaguarClock.png
Size 22.6KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 c257f6dcf2a842219e24f43bd47f09ee
SHA1 999662c17d219cc7a6675a3ef0868104d13479b2
SHA256 d9c00401bf038c437165b16271c0594fa63f0c26355b348ebf126cb322dd8bf2
CRC32 3C418733
ssdeep 384:5Ahl3Fn0P77pTlP0pz5R1RPHwYNUSEAI9wiF/6fXwgQScBeWyW64Z0Y1HKlwJALt:e7WBTpkTvrzEAI9wdvXzgZtEGGL40v0U
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name ab47a5adf204bc4c_romanoldmin.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\romanold\romanoldmin.png
Size 3.6KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 100 x 14, 8-bit/color RGBA, interlaced
MD5 bea6a1b4cc75e0a5d69c3e4ee40387c5
SHA1 0a74c9554d2a88075d5f79c9cb308cc96fc22173
SHA256 ab47a5adf204bc4cd1c14a7050fc6b1dc0dfa8c791ebcabc8111fdb003c45c17
CRC32 F7531326
ssdeep 48:897lfu06j8qtm8LF+2XKtC69+K06bqFoNUrtzi4pTGM+QjA3yn7o2/cre49YKq7B:6G0NmpXKcmqFkEte4pTGz3y7oNrhWB
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name af0bc4cf79640a01_hallow.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\hallow.png
Size 85.6KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 400 x 400, 8-bit/color RGBA, non-interlaced
MD5 fa8384d8da635f35bf502976a6dc7f43
SHA1 4cad60130366d35dc1ea05099bafe6dea0e566a1
SHA256 af0bc4cf79640a01cf9e991d3f73993ff47d7d148f214af36b6143c269ef1bc3
CRC32 60A2C136
ssdeep 1536:2gdcj1dn9NCguYm6249KZqmzkHcX3qNswTBP/o3wdvdGQwPQSXpTfTWpQdZFT:jcfDyLs9Kkm3oVTBP/hVdO/ll9
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name ffe096724f22fdd9_apple.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\apple.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 38f4322d84e0e6a5bd58bbe888061ac7
SHA1 4db5c23a6298d62914714e7b92e11ef4cb41ac35
SHA256 ffe096724f22fdd9cfb9c9622ce51f965648d9ee7c2c5537b39f5c1313a6391f
CRC32 5C84F927
ssdeep 24:BE8rGXz5lr9BxoaKy4YPTOI01rfwPkpGdGm8bCi1iYdeibQ0Wd9iBxLuQI:BTqFluf19j4dGmQDiYdBQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 5821718c8e53a8ac_aj-cityhall-500-hour.hpng
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\AJ-CityHall-500-hour.hpng
Size 1.3KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 181 x 27, 8-bit colormap, non-interlaced
MD5 cdbc4abb27f64b3e4073d798d205b5b7
SHA1 58577123b1d59fccfb80a588d92c11f447258a23
SHA256 5821718c8e53a8acd10dd52c12e451e88f3dd7ce94332e6406490df2459823d3
CRC32 B0642D46
ssdeep 24:m6y1htZdWwjx82lY2T3pHEVbuYYiyJ3Vbq4G6SA9dGogWH+192AotNLFFg2u:twqNn2SATJ3X3feH2JF6
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 610fb3556b3e858a_blueballstd.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlueBallStd.ini
Size 1.4KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 bb688c71a92147a2f5f7c60e9bfd6d4d
SHA1 802183cbaf47321f3a9144f81c36ae4d8545d158
SHA256 610fb3556b3e858a233766fa9af50057d41f6dbcbb15ac998a1de733de2f471b
CRC32 BBA63498
ssdeep 24:BEarGXz5lrUBR6TO5fq1rf7kpFg4SGIo8Gio403NPeibQ0Wd9iBxLuQI:BhqFlQfqeI4SGJ/4YPBQJTiBxLvI
Yara None matched
VirusTotal Search for analysis
Name 94da919fcc7fdf0b_japanese.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Japanese.lng
Size 2.4KB
Processes 2552 (twtyoe.exe)
Type Non-ISO extended-ASCII text, with CRLF line terminators
MD5 2e5f6a85256da31d089291a7e2a9a762
SHA1 70ae0bc41f4111dbe941f42cc3148b5b7839ee1c
SHA256 94da919fcc7fdf0b84b6e056d7c5151e3bf481f83501e0956c4482e9c7dab324
CRC32 15CD5FCA
ssdeep 48:R1ZqJLkNJuzKizSeJjhrMVRazEBplicgrqrjYAayZyGX8LD/uPCnXTu:DZqKNJfixJjhrMjazEBqnqrjYAa8Ls25
Yara None matched
VirusTotal Search for analysis
Name 43e465ae6cb6bd2c_mickeymouse.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\MickeyMouse.png
Size 27.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 123 x 124, 8-bit/color RGB, interlaced
MD5 138b8fbf86d45154f336d82b65f64318
SHA1 7ef479f3143ce1981d5b7586c770a5befe2f4c39
SHA256 43e465ae6cb6bd2ce7d58ed2082ac8598437b40b77b6ade04b89c39ec1e82001
CRC32 24B20027
ssdeep 768:xXTnuvx75M3cPMaaI5SG58+a3/zRHC8nDawy6AXe68Dp:IvJ5kGeI5qPzRwhXe6E
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 86652bf37435c6e5_jaguar.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Jaguar.bmp
Size 42.2KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 119 x 120 x 24
MD5 41c592514dfa1093a831102815aad068
SHA1 20474fcead8eda8247270b171fc0ccd6b1edbaec
SHA256 86652bf37435c6e524e5dc73056f9a22f08acfb8e427372e51d4c18fed4f2053
CRC32 00F8DBDE
ssdeep 384:kZz8J05teDCm3J1MREBqXFlKbBfqJ+/VAImPWFOQ:cOZHkuqVlKBd0CR
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 02908c5b2e4603c6_darkcrystalball.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\DarkCrystalBall.ini
Size 699.0B
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 9873ab1c4f582f7dba405e18bf9ec1f5
SHA1 2ed9bb9613ebf3b11b334f0132c3ad7c24c64e28
SHA256 02908c5b2e4603c69abbd0f6dd5be49b2ae0c68036624c3001574b8f87970c1c
CRC32 BFCD2557
ssdeep 12:a4EqmYrrrcR5pjpJrtOphhAlL4GOy46hp7pEH3eJvzpEH9CPpEHoNlTYQBcpwcz:BEQrm5b7OSF4G66hpOUvm0SIrJi
Yara None matched
VirusTotal Search for analysis
Name 5f8639ec82c16607_violettekugler.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\VioletteKugler.png
Size 17.6KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 1600 x 900, 8-bit colormap, non-interlaced
MD5 579bd68b443b5ae75f83b7e55dcb66c1
SHA1 447ceaafeca2f9c59c5c5fe9e15ec1efabdd173d
SHA256 5f8639ec82c166074ec913ed4b953c9cc91363b597a2a103cfde56b4e4ed3fbb
CRC32 ABDB77B0
ssdeep 384:uysVnL98NSU2tOrwmR154tM8Bc88TqnlJpd:uySXUaO9R4fBc86qhd
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 4db314221b4c98e7_bulgarian.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Bulgarian.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 fc5efbe2a513acfc40b7276ba1d9e7fd
SHA1 68879191dc99cbe8f1d0de298aa2ea9dd2126017
SHA256 4db314221b4c98e7d8e5849d7502bb2926e2a7cd4b340ea127e3351c9fe38f57
CRC32 7F00C3C0
ssdeep 48:Q4D1txCI+Pyna/m9PDbSRiVXwCZhYRag3YRikKYuPCnXTu:NLxWTsPDbS8GCFY81KL6XTu
Yara None matched
VirusTotal Search for analysis
Name 3b78eef71580d0d8_bluesphere.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlueSphere.bmp
Size 44.7KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 123 x 123 x 24
MD5 d0f718a4ec8c75af41446108fc6dadfd
SHA1 4267134842903e2967a93896fd48a8cf92ea2a71
SHA256 3b78eef71580d0d884fc53773a304a22c9c3ac007bc1f28ae182b7b153394713
CRC32 6095B96D
ssdeep 768:4JNtQgkxvPaaWTDWWzXSFzhVORp+8jYCzPlT/536x4:IgPaakXoLOdP55j
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 6b4041b6dfd71c01_aj-cityhall-500-minute.hpng
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\AJ-CityHall-500-minute.hpng
Size 1.1KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 230 x 5, 8-bit colormap, non-interlaced
MD5 8619f256a096c9e1ad177f97b799d82d
SHA1 9eedcb61bb671006830d76a89969ce962c4f6813
SHA256 6b4041b6dfd71c01e16016d5cc98a950951a1b44a3fa0ce48a7668bd4a229853
CRC32 0E356A89
ssdeep 24:uLy1htZdWwjx82lY2T3pHEVqSacyJ3VcHJqlGZE+JMGzl0s2snMj:mwqNn2S8JPJ3K4l+J0dj
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name cfe734403030dd1a_brazilian portuguese.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Brazilian Portuguese.lng
Size 2.2KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text
MD5 663ca37cb27aa3b419c76f228889b08c
SHA1 875e600ffea6e925d35011f5a44ca5e9fecd1140
SHA256 cfe734403030dd1a5bdea2f307fb3416c2dc424af6c298a127a2cd13900bde67
CRC32 8E5C339C
ssdeep 48:9DLSULlHyDf339z4wakpkxNOp0EIPY5drDQvXcBkK/h2nb3M:9D+ESz3NzNkzadrDQNkao
Yara None matched
VirusTotal Search for analysis
Name a9575b7ebaca877d_cloq.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\CloQ.png
Size 12.0KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 160 x 110, 8-bit/color RGBA, non-interlaced
MD5 49856033126c7ead5edc2b3a82504a7e
SHA1 9fd4b61502c34a93b9c5e401aa84fe661559f575
SHA256 a9575b7ebaca877d5693de98d9298317574bd6463e3ef129f8301c151698227d
CRC32 F47BDDE3
ssdeep 192:xSx2nqVZzOLi+6PrSjnGhLaU5TZaMRF11U8yAgk0AaUNxTX0acFNNyZik72XdZ:Yx2mlOG+6UGhLxaM91U8ypk0BUNd3NwB
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 163836a57326cd51_bluesphere2.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlueSphere2.png
Size 23.3KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 daeb5b8e238848f28d9cb967dc211d2e
SHA1 6672cacb53247fe0fdb4f68452b19a462ba2555d
SHA256 163836a57326cd517c89098265e5dcb0cf689c55a169e5b0b576565560951f70
CRC32 9A28878B
ssdeep 384:5jIsgmpetEnrsFb0gxMo2FHnRvS1VicSzk+U3Qa8FNvB7SrSDlE8LpwyTWEtJwJB:9IQpeMIMokvS1gxz83nq57YL80EtJwTr
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 2065d94ff0ef5fe4_russian.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Russian.lng
Size 2.4KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 ba5647e2889a3b3da10e3bd5be0ce4b5
SHA1 cbe0ef3874710a2efc9725d1a2c2f900b828d6c0
SHA256 2065d94ff0ef5fe40f3521861e61ab70ec546a17cb3cc2e9b15d64bd3eb96ba1
CRC32 98DE55E6
ssdeep 48:t8IUxeikqFAecTGM+Nygw49MLuDbV3NaG2PHZG+DcZ577UagrTu:twxTkqFAPB+LwMMLUb2GaHhcZhUzTu
Yara None matched
VirusTotal Search for analysis
Name a3bfbcef85e83170_czech.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Czech.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type Non-ISO extended-ASCII text, with CRLF line terminators
MD5 a1a459aebed25c19f29a65e4ba95649c
SHA1 d9c7e65249563cc9523305e9d56f8bd6ac10b6e1
SHA256 a3bfbcef85e8317089b62b98265b052949f3b11d0b404526b51aa489c14e5649
CRC32 D05A4A43
ssdeep 48:hInwTWyJOTni5/QS90WmUBC3MRq6mgmcvL5uJBUTLoAc9ceGK6mq6vs5:htTWyJOTi54oecg/cT0XAjY6AG
Yara None matched
VirusTotal Search for analysis
Name 4ffe5d4bf560c15d_french.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\French.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text
MD5 7767fbcda3db9b77f1e8feb02172ae34
SHA1 2e7fc2b22e094061ab51fc805cf16863e601a512
SHA256 4ffe5d4bf560c15db2777f0bc31652d7c733dc3cad3b4e052b10bbd6af65a0ec
CRC32 1BE6B4A9
ssdeep 48:vJFRS8/MlfWqeawdkKPnwShTJAnMZ/ekJOFGD6l243LqicRy:RFs8UxWqeanSTJAnXkJOv7qicg
Yara None matched
VirusTotal Search for analysis
Name 1f4a7272783e4a28_beep-clockchime.wav
Submit file
Filepath C:\Program Files (x86)\ClocX\Sounds\beep-ClockChime.wav
Size 3.9KB
Processes 2552 (twtyoe.exe)
Type RIFF (little-endian) data, WAVE audio, Microsoft PCM, 8 bit, mono 7418 Hz
MD5 fedc74e595f352049284195de8e75f09
SHA1 8cf9d3e2d8152d843122358e10f43a66935ea5ad
SHA256 1f4a7272783e4a28b0bb7a73cf832f75d0d1358a99555a1f84c9cecd52d2a227
CRC32 2BFED7C0
ssdeep 96:mzWFPsX5MewbZxnvkQRti2glLf0KpyhF7YdBF2eKAtFjP:ma+MewzkKglLf0Kpzy47
Yara None matched
VirusTotal Search for analysis
Name 33b1ecfa6dc605fc_deutsch.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Deutsch.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 b4db92c415b94a3f270b3b4a06d2a446
SHA1 0413f4d52d6174d0c3c5e792eb2c7be08e907d02
SHA256 33b1ecfa6dc605fcb6c7dbebf1792ac93ab1f8c7c2fc98dff10af4c97553ee9f
CRC32 2917626B
ssdeep 48:ZfBd7wrhvl0k/Bz2XAxq9J4SCVbYaeuHQyVSXh2F0bzvxFWIEuJsZFXlVUMjL7YX:/wxJz2wxqQFb3NSFWIzUXoMzY1Z
Yara None matched
VirusTotal Search for analysis
Name 23dfb2a6b5310650_Zip.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsuEE87.tmp\Zip.dll
Size 76.0KB
Processes 2552 (twtyoe.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 b6ffd4a7812b0608b18c8665cf3b4b5b
SHA1 1a486e8281b80ddb0060a28e43ab14ee90ea4e91
SHA256 23dfb2a6b53106509444bec24b9c3893a82f8f04520f03f6b1696f53d19170c5
CRC32 D3FB1EDE
ssdeep 768:6qzEOfLo2T0pHES42P2wsSrSlAKL0RvTZTEeo9L1Po0OQuiSKcKysNU3her9doh3:6hQspHrXK5eKO5KysyxAd4C+R
Yara
  • Malicious_Library_Zero - Malicious_Library
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name f6f4ad8f998096b3_ring2.mp3
Submit file
Filepath C:\Program Files (x86)\ClocX\Sounds\ring2.mp3
Size 6.5KB
Processes 2552 (twtyoe.exe)
Type MPEG ADTS, layer III, v2.5, 32 kbps, 11.025 kHz, Monaural
MD5 ffe63755c41c834caa3d4967d099108c
SHA1 b3c86a2fba4123dc1a107328b810c64a12280936
SHA256 f6f4ad8f998096b329677bce8cc1db37b6923c5de6761328dd5c3ef6a49ce892
CRC32 1D412A21
ssdeep 192:gFG+4dGvjjICGxrvRRIOHmEaS4VwpZo0TuoMa:gFG5QfIxxrpRIOGBS4Vw4auda
Yara None matched
VirusTotal Search for analysis
Name bcde729100d23631_blueballstd.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlueBallStd.png
Size 27.5KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 129 x 129, 8-bit/color RGBA, non-interlaced
MD5 52b3b390690b8cc3d7e432f7ad26069e
SHA1 2a777edc8d78796291722ec5ad91fd036224daac
SHA256 bcde729100d23631e527e126ac820e00b894d5ca0e2b1d11dfe13e2da2045ffc
CRC32 C2AD2154
ssdeep 768:MtXV8nMgM3Da9p/tp3bH73l8vAPt9k73YpH1:wV8VMalb7l8YPtS7oH1
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name fde433aba0fde669_jaguar2.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Jaguar2.png
Size 26.4KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 a12a30ad1d5df1aa37a800872f645267
SHA1 6b2235dffb9c8ac6a3d86e852a00d46d623f6843
SHA256 fde433aba0fde6691638d7af029ef95561980183697595097d23beed55263bc8
CRC32 8DED925B
ssdeep 384:5hLqpEkpEyxcmTzRgctHZTjeZz0V0LFLXxnQISR+ApHwsXRcyXnEWjsExibdCaVO:vuSIEBajH4hBQtJpHwsXT0zpdCao
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 757b6322ff5894af_slovak.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Slovak.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type Non-ISO extended-ASCII text, with CRLF line terminators
MD5 6b5809a31de634a0ec58019350e4d50f
SHA1 6060c89f71ffef00df7053d66087938de5e2aef5
SHA256 757b6322ff5894af64ab3887bd8690838d5d59c561cb963cae1ad8ff78117f1e
CRC32 CE3AF562
ssdeep 48:Y81cEWQ51kbiZyt8jJkuVB+X4lGxvSDjvna4HP/MTNOTJPcRW9ZBM:YYWQbDQW9eIlWEnJP6OGUa
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_nspEE67.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nspEE67.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name ef28d4ef8cab0cee_mars.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\mars.png
Size 46.9KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 250 x 250, 8-bit/color RGBA, non-interlaced
MD5 abe2e3676135dc72c21f6ac4d55d5c8c
SHA1 43073cc174592a80d8e2d7ad23bfa2164b92774f
SHA256 ef28d4ef8cab0ceefd7b60fe2c2ecde52decfea74b041c452046dddd4852cba8
CRC32 70145C62
ssdeep 768:iNAFMfapVRMLrN41wNbVDgrnTjBebwTXR2B6tYhfU3XlGfKWFDJrtw+dceO06ANw:iNAF5VUEEbirTdmwTgBLhfUFGl5dG0na
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name baece35cc80c8abc_hallow2.ini
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\hallow2.ini
Size 925.0B
Processes 2552 (twtyoe.exe)
Type ASCII text
MD5 448e7ca51ff946140e484e2b8685e9c5
SHA1 da9fd561cdd1783f0b9a43a842f5b301d13b0bcb
SHA256 baece35cc80c8abcfa11089aa019fbeef1878a0e989c3b49c2734f621cbecc67
CRC32 E24D123A
ssdeep 24:BEurZuC5CTzbr1nvlVkLKhaLgGLXoIZKgVi0uzUrn:B9Dyn+nkGUnNU7
Yara None matched
VirusTotal Search for analysis
Name 8c923eec22b59e97_wall clock medium.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Wall Clock medium.bmp
Size 73.0KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 158 x 157 x 24
MD5 a87fb416d0d925ec81816e43b4e6205d
SHA1 7355f2e82aa5d9b11c706c4275f86986c26a421f
SHA256 8c923eec22b59e971ef0d1a0fff6c8f2d7b42c8577be7430cf3e1e4f0024f3b7
CRC32 AF5A2207
ssdeep 768:hHhvyP75gct7nK+cQ/d7yJZFDU+nfVOjKx2mW6ENRObp+A6iAk9x1:phKP7ndKcd7u/tOjKx2hNcAH+9x1
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name fc214d8533a48a7e_bluesphere.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\BlueSphere.png
Size 25.3KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
MD5 e8b800502663e1dc178c8c7f20e4910b
SHA1 67d4438f1114f2d66de8082c06ce873e1b0977bc
SHA256 fc214d8533a48a7e6acb73ea847484b4ba9d9591196612a63a803f71dfd1e5ba
CRC32 A8F73700
ssdeep 384:5gAXluiJgvL09fKPHmTCrKnehZk/Bl/a6dPipbz2J/ivEIs8fHF30X1OuaUol9:VlIvL09fKPGl/rbjcVmX1ZaH3
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 1f6f37adb95bc0e5_klokjemin.hpng
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\klokjemin.hpng
Size 1.9KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 50 x 9, 8-bit/color RGBA, interlaced
MD5 9d6062887c1ac43745755af0decb59cf
SHA1 03f8c2912da77d162468d97b29583446de040cdd
SHA256 1f6f37adb95bc0e517f8aa261c2ea545368ce5a3893c869df24f84b2e051109b
CRC32 25DCA8C9
ssdeep 48:+UBnMSY1NiJ7G+lYXQd1GCkVrTzjI2yvf:+UVvbYXc1k1zW
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 80e87432d7764634_srpski.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Srpski.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type Non-ISO extended-ASCII text, with CRLF line terminators
MD5 1d9538a2f34f9f14c5359a802d88eea3
SHA1 97d508ee407e866ee43d93789edf66a82e067af6
SHA256 80e87432d776463469912bc1a0b42039fe76fc86014f236d277678abc3f3246c
CRC32 C2CFAEDB
ssdeep 48:Oe2ySYKHbJVvamhXm6NPLFXYmB4midNoiqiEUygVMg+a3kGjkIa2RFmk4RTu:Oe2ySFbJham86NPLFX3OmwSPU50a37Br
Yara None matched
VirusTotal Search for analysis
Name 48db744d53e5d7eb_dsaqua.bmp
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\dsaqua.bmp
Size 32.8KB
Processes 2552 (twtyoe.exe)
Type PC bitmap, Windows 3.x format, 129 x 129 x 16
MD5 4d99c681a6f8df6bd48a49b3162b0dbb
SHA1 123e39e10426bfec2a050b963ecec4fc379ead97
SHA256 48db744d53e5d7eb33715cf57215b6d556bff12a0a21158b37215ef67ce96787
CRC32 AE09C30F
ssdeep 384:WF3WK3fGUUUUUUUUUUUUUUUUDUUUUU63EZJTL/o70pn0cCzW7dmb90:k3WK30UZpL/o70UzWkK
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name b2391bb989c14573_citizen.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Citizen.png
Size 73.6KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 200 x 199, 8-bit/color RGBA, non-interlaced
MD5 74d7455a9e42edba04a1fc8e5d1ca1a4
SHA1 9d0cd86a18aca40aae14018ea9fa8b37a1d929f5
SHA256 b2391bb989c145731214525dd323cfe4978c87dd6781fd2a23e1209a2df7115c
CRC32 39A464A4
ssdeep 1536:Engr3PcDKaKs6I/Dmqji+UUK7Rt+E8VyMkHsBP8jnZ5oi:f3PNnI/Fm+UUKekMkHkP8gi
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name e913e546b84c80f5_english.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\English.lng
Size 2.1KB
Processes 2552 (twtyoe.exe)
Type ASCII text, with CRLF line terminators
MD5 e873d0c2ecd4dcce5e89191ffde5253a
SHA1 04d6c989c41d8e2895b94e1d41882c3f76ef9c0e
SHA256 e913e546b84c80f5f2d4b4cf85d72bf1f722aabd7b9c5c97814f828966077296
CRC32 2FEB52EC
ssdeep 48:S9910MsOKxTvsoVeOFLvxCBkin0Dqtbry4whkLA8wFfHYwgAuPRXTv:S9xkFsoXZg0DqtbG4whknwFf4wgTNTv
Yara None matched
VirusTotal Search for analysis
Name ac322a5c1ab93b1c_secondhand-7.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\DarkCrystalBall\secondhand-7.png
Size 966.0B
Processes 2552 (twtyoe.exe)
Type PNG image data, 258 x 5, 8-bit colormap, non-interlaced
MD5 903639fd237d7a7ad546c610ac3e5b0c
SHA1 e387cec4b6524e228adde937ff7a73a10e4d5c7e
SHA256 ac322a5c1ab93b1c7c6311ebfbadebb5fed8d4745032c024fdd4520d040c55b6
CRC32 8025E3F3
ssdeep 6:6v/lhPk51llGMkuldXgknPMnP8wE4cyOP5Rt+D/6SaRRClMUspNvsOzQp:6v/7Q+EQGmP8ieRt8/6jRjUspqOza
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 711b797c47b4d076_romanminute.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\roman\romanminute.png
Size 3.1KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 100 x 9, 8-bit/color RGBA, interlaced
MD5 a86418dbe12535f31e5e73b3dc7baf2a
SHA1 f080ea7232635292a8bfc14f7139c2df009cd70c
SHA256 711b797c47b4d076e3fea8ff4049da416fdaf36550df6b913a2399af6ac5c8aa
CRC32 9973E922
ssdeep 48:3AzX0UHGEFpLWR5XgeqLFOYhxzRnwMdsrnYPcds1oIFFTth5bNMuv5qWBR3hxk:wrdGEFlKJg7LFXx9nwMdeldsa6Ff57E
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name f054eec75474fa5a_italiano.lng
Submit file
Filepath C:\Program Files (x86)\ClocX\Lang\Italiano.lng
Size 2.3KB
Processes 2552 (twtyoe.exe)
Type ISO-8859 text
MD5 2d6c2e8ae88c3269b639ddacfcc87775
SHA1 43ee3f9a70a9127bbf36b7c82d19716fe0b7a316
SHA256 f054eec75474fa5af87268d06c5dc7b007ed18c5a7fcb682c8f1e681bc5ca63a
CRC32 CCCC6107
ssdeep 48:eYCHSWlXfWhQYLnGWDvuYhAbBLG/VDR1OUZFM9S+Net8W92xxZxpvdAj/M:F0SEXf4QMpDvu8AbSVV4eFM9S+ct8Wgd
Yara None matched
VirusTotal Search for analysis
Name 4807722eb149030d_amarillo.png
Submit file
Filepath C:\Program Files (x86)\ClocX\Presets\Amarillo.png
Size 23.8KB
Processes 2552 (twtyoe.exe)
Type PNG image data, 176 x 176, 8-bit/color RGBA, non-interlaced
MD5 0bc808a35c32957f3c115de1593263af
SHA1 639dff4394e4739e48b8647e24bf5ca055975482
SHA256 4807722eb149030d3be8df0d51fe0b0232ca618360d7982f637f9560a00488e2
CRC32 BE6AF714
ssdeep 384:Pj/Jv0KxBi7S2563Y7bY45Bi3cmrt05iuxtrjFrF27F0JP6BSyk:P7JVx+7cYHH5M3cS053LrjFrswPxyk
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis