oobp.exe

O&O BuildPE

O&O Software GmbH

Publisher:
O&O Software GmbH  (signed and verified)

Product:
O&O BuildPE

Version:
1.1.565

MD5:
181892146f210143f386b1cc1947ffa1

SHA-1:
27156d701642801394a0e04ab41c07f41f2b4f60

SHA-256:
7d7e1cbcf413503e1f57e701c9740404aaef9758b1c27a817af6099525fc4cc1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 2:48:53 AM UTC  (today)

File size:
2 MB (2,054,904 bytes)

Product version:
1.1.565

Copyright:
Copyright © 2010

Original file name:
oobp.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\oobp.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/22/2014 2:00:00 AM

Valid to:
11/22/2015 12:59:59 AM

Subject:
CN=O&O Software GmbH, O=O&O Software GmbH, L=Berlin, S=Berlin, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
179775332AF09A66144129164F770E8B

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:SdUsCYyD9BXItUsCYoUsCYNUsCYV/6P56TCUsCYq:SdUeyD92UeoUeNUewyCUeq

Entry address:
0x1AD9F8

Entry point:
FF, 25, 00, E0, 5A, 00, 00, 00, 44, E0, 1A, 00, 00, 00, 00, 00, 30, E0, 1A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 38, E0, 1A, 00, 00, E0, 1A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 44, E0, 1A, 00, 00, 00, 00, 00, 6D, 73, 63, 6F, 72, 65, 65, 2E, 64, 6C, 6C, 00, 00, 00, 5F, 43, 6F, 72, 45, 78, 65, 4D, 61, 69, 6E, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Code size:
1.7 MB (1,753,088 bytes)

Scan oobp.exe - Powered by Reason Core Security