extraction.exe

IP Labs GmbH

Publisher:
IP Labs GmbH  (signed and verified)

Version:
5.2.0.5

MD5:
ae4e9b7a76d373997680908109cc47c7

SHA-1:
60f6c656f351f023b26f868652c2e68a7ac56a08

SHA-256:
9111ddd07e4acecf36158c7cca5d809f05144260dcc181ad1e5d3c1c3ce9512e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/1/2024 4:33:41 AM UTC  (today)

File size:
3.6 MB (3,761,968 bytes)

Product version:
5.2

Copyright:
Copyright (C) 2016 by ip.labs GmbH

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\Program Files\whitewall\extraction.exe

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
12/21/2015 1:00:00 AM

Valid to:
6/17/2016 1:59:59 AM

Subject:
CN=IP Labs GmbH, OU=APPLICATION DEVELOPMENT, O=IP Labs GmbH, L=Bonn, S=Nordrhein-Westfalen, C=DE

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
65ECE2C83A1BF44C1DBACCD6CAAE4A6E

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.25

CTPH (ssdeep):
49152:pyGiGY+3dpa/iu4APNqoFbvfLVElbtj3u7fmq22yGs7dJIf+Pt5eTuT8tigj:A0LNdSNDdZElbtj3Up89HImVqt7j

Entry address:
0x31D018

Entry point:
55, 8B, EC, B9, 1B, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, 57, A1, 5C, 8B, 73, 00, C6, 00, 01, B8, 94, 63, 71, 00, E8, 2C, BA, CE, FF, 33, C0, 55, 68, 82, D3, 71, 00, 64, FF, 30, 64, 89, 20, 33, C0, 55, 68, DD, D2, 71, 00, 64, FF, 30, 64, 89, 20, E8, DF, C0, CE, FF, 8B, D0, 8D, 45, EC, E8, 7D, 91, CE, FF, 8B, 45, EC, 33, D2, E8, 5F, 1E, DB, FF, 8D, 55, E4, 33, C0, E8, D9, D5, D1, FF, 8B, 45, E4, 8D, 55, E8, E8, B6, B2, D1, FF, 8B, 45, E8, E8, 66, BB, D1, FF, E8, D5, 19, DB, FF, 33, D2, B8, 9C, D3...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
3.1 MB (3,259,392 bytes)

Scan extraction.exe - Powered by Reason Core Security