lsrmphdsetup.exe

Lazesoft Recover My Password Home Edition

LAZYSOFT TECHNIQUE LTD

This is a self-extracting archive and installer. The file has been seen being downloaded from www.downloadcollection.com and multiple other hosts.
Publisher:
Lazesoft   (signed by LAZYSOFT TECHNIQUE LTD)

Product:
Lazesoft Recover My Password Home Edition

Description:
Lazesoft Recover My Password Home Edition Setup

Version:
4.1.0.1

MD5:
150d5bb64eddf224b8671bbc025d7a1c

SHA-1:
b70d6430d9ad39f2f784326a0219a552a6b27d7c

SHA-256:
12184f1fd2fd6834cea84f50fe1b8a5bb5b844ea4930ea1fe9a2f90c83fc6963

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 1:57:52 PM UTC  (today)

File size:
31.9 MB (33,500,488 bytes)

Product version:
4.1

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\lsrmphdsetup.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/6/2014 1:07:44 PM

Valid to:
9/6/2016 1:07:44 PM

Subject:
CN=LAZYSOFT TECHNIQUE LTD, O=LAZYSOFT TECHNIQUE LTD, L=GLASGOW, S=SCOTLAND, C=GB

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121DCD4E0587301475C5B5C985A80B20FBB

File PE Metadata
Compilation timestamp:
7/9/2014 8:58:13 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
786432:TiLFcJBfgJXKvBAgSr1HZLKthIpNy25MSRf64lW:T8iJtgwK5LKthIu25nk

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 2C, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 16, D8, FF, FF, E8, 65, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 2B, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 50, 86...
 
[+]

Entropy:
7.9997

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file lsrmphdsetup.exe has been seen being distributed by the following 10 URLs.

http://www.downloadcollection.com/downloadredirect.php?idx=222655

https://bluemoonsolutionsltd.app.box.com/index.php?rm=box_download_shared_file&shared_name=jjexccetyjnlsqv9nkv6xw36d8rsm40d&file_id=f_62133874145

https://doc-04-9o-docs.googleusercontent.com/docs/securesc/0qbi5qin3gs5u8narcvb7kq4p23eqo7h/jc5vd4mv21re2np450eas14npv9c2bci/1474905600000/.../15167630646175070413/0B-G88QS03dETZ1VwcVd2ME9qZkk?h=01801010376041036472&e=download

http://software-files-a.cnet.com/C13C8A91-F8A1-4DF4-9111-9A4340D806A6/FinalDownload/DownloadId-8C4EFC37B97DA904312F995D4843F8A7/C13C8A91-F8A1-4DF4-9111-9A4340D806A6/s/software/14/.../13/.../lsrmphdsetup.exe

&onid=18501&oid=3001-18501_4-10973339&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=security/pswd-managers&topicbrcrm=&pid=14461346&mfgid=10055229&merid=10055229&ctype=dm&cval=NONE&devicetype=desktop&pguid=40b75b2af77e7390bd0950b9&viewguid=cmoTKDEnPbPRpGoxht-TkYJFet@5cxWmXg@C&destUrl=http://files.downloadnow.com/s/software/14/.../13/.../lsrmphdsetup.exe

Scan lsrmphdsetup.exe - Powered by Reason Core Security