PreventRestore.exe

Prevent Restore

Yury Saprykin

Publisher:
PrivacyRoot.com  (signed by Yury Saprykin)

Product:
Prevent Restore

Version:
4.14.0.0

MD5:
28f89ae5c76f9f652fe4ea4ea85b0a0b

SHA-1:
bb07f31883532dc1fc3b6abf951dc20dc4c1f6c2

SHA-256:
bc853697d0f8f986f67f67b7fabe9aa89d7d362f43b4b19fa7b2ba66c4e6fd66

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 5:45:43 PM UTC  (today)

File size:
189.8 KB (194,304 bytes)

Product version:
4.14.0.0

Copyright:
Copyright © 2002 - 2016

Original file name:
PreventRestore.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\prevent restore\preventrestore.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
3/12/2014 5:00:00 PM

Valid to:
3/12/2017 4:59:59 PM

Subject:
CN=Yury Saprykin, O=Yury Saprykin, STREET=Prospekt Revolucii 25, L=Voronezh, S=VO, PostalCode=394000, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00C71956DD75CB37084C7A30D3E4519F3E

File PE Metadata
Compilation timestamp:
1/15/2016 4:45:52 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:cnBmwFNF9SoYR9XLXuWqrt17agjJz3s9kmZttRiK4SduY/NcJgsZsOx9wic+ByYr:spYR97XuWHRiK4SduY/NcmsGC9np5

Entry address:
0x24EDE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.3501

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
140 KB (143,360 bytes)

Scan PreventRestore.exe - Powered by Reason Core Security