cardrecovery.exe

CardRecovery

WinRecovery Software

Publisher:
WinRecovery Software  (signed and verified)

Product:
CardRecovery

Version:
5.1.0.0

MD5:
04b6c61474ec520326fbfde19b602b19

SHA-1:
d287e8cee306342b9123da2b9ae25dbe487821bb

SHA-256:
131ecf76edc70f84a46b9ea6a6de8181aed7f378f977d5b2b7688c99bb8c05fc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/12/2025 8:44:07 PM UTC  (today)

File size:
1.6 MB (1,683,208 bytes)

Product version:
5.1.0.0

Copyright:
WinRecovery Software

Trademarks:
CardRecovery

Original file name:
cardrecovery.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\cardrecovery\cardrecovery.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
2/21/2008 7:00:00 AM

Valid to:
2/21/2011 6:59:59 AM

Subject:
CN=WinRecovery Software, O=WinRecovery Software, STREET=Yudao St. 29, L=Nanjing, S=JS, PostalCode=210016, C=CN

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00B49492DE6DDDA31BA81EB92138DCF897

File PE Metadata
Compilation timestamp:
2/12/2009 1:31:14 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:eqzOA8NSvMGh3rpf3mzIaCXfZg1iMXMP/9gfvW3me5H3KyOenInRgw4p2OcHjIR:ZVoJGh3tf3mE9fm1/8889lno+GIR

Entry address:
0xAA978

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 60, 97, 4A, 00, E8, CF, C9, F5, FF, 8B, 1D, 64, E7, 4A, 00, 8B, 03, E8, E2, 03, FC, FF, 8B, 03, BA, 2C, AA, 4A, 00, E8, 8E, FE, FB, FF, 8B, 0D, 28, E5, 4A, 00, 8B, 03, 8B, 15, 84, 1C, 4A, 00, E8, DB, 03, FC, FF, 8B, 0D, 80, E5, 4A, 00, 8B, 03, 8B, 15, D0, CB, 49, 00, E8, C8, 03, FC, FF, 8B, 0D, 18, E8, 4A, 00, 8B, 03, 8B, 15, DC, C9, 49, 00, E8, B5, 03, FC, FF, 8B, 0D, EC, E8, 4A, 00, 8B, 03, 8B, 15, 00, B6, 49, 00, E8, A2, 03, FC, FF, 8B, 0D, E8, E8, 4A, 00, 8B, 03, 8B, 15...
 
[+]

Entropy:
6.2367

Developed / compiled with:
Microsoft Visual C++

Code size:
678 KB (694,272 bytes)

Scan cardrecovery.exe - Powered by Reason Core Security