lnrdemo.exe

OfficeRecovery LLP

Publisher:
OfficeRecovery LLP  (signed and verified)

MD5:
6454fdc39de0900c5bf2a778393b0219

SHA-1:
8cb4ea991132c1d7757a3013139fc058a2749ee2

SHA-256:
8a576c6959a4775abb7e35d5521a2eb9ba7cba429dad5cc9795cd2a4d9d55a7a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 10:06:49 AM UTC  (today)

File size:
1.8 MB (1,863,680 bytes)

File type:
Executable application (Win16 EXE)

Common path:
C:\users\{user}\downloads\lnrdemo.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
2/27/2014 2:06:40 PM

Valid to:
2/27/2015 2:06:40 PM

Subject:
CN=OfficeRecovery LLP, O=OfficeRecovery LLP, L=Edinburgh, C=GB

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2B94F59EF33D15

File PE Metadata
OS version:
0.65534

OS bitness:
Win16

Linker version:
254.255

CTPH (ssdeep):
49152:RLho7sM00h3jCc4trvQj5PGALSv/kMYuQGnv4pi:RLgsMrFGttTQFPGAe/kvkv

Entry address:
0x1D0000

Entry point:
D0, CF, 11, E0, A1, B1, 1A, E1, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 3E, 00, 03, 00, FE, FF, 09, 00, 06, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 1D, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 10, 00, 00, 02, 00, 00, 00, 02, 00, 00, 00, FE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 00, 00, 7F, 00, 00, 00, 00, 01, 00, 00, 7F, 01, 00, 00, 00, 02, 00, 00, 7F, 02, 00, 00, 00, 03, 00, 00, 7F, 03, 00, 00, 00, 04, 00, 00, 7F, 04, 00, 00, 00, 05, 00, 00, 7F, 05, 00, 00, 00, 06, 00, 00...
 
[+]

Code size:
384 KB (393,225 bytes)

Scan lnrdemo.exe - Powered by Reason Core Security