r-angel-windows.exe

복구천사 Windows Recovery

LLC SysDev Laboratories

Publisher:
SysDev Laboratories Korea Co. Ltd  (signed by LLC SysDev Laboratories)

Product:
복구천사 Windows Recovery

Version:
6.7.1.4230

MD5:
3f0a4a5738112e2caaef24a7adf7830d

SHA-1:
7a8ea5f8a7045848afcee3beffbb2402e385365b

SHA-256:
f18218604ccbf9747fbff1def7acf961636c4d984ded74b77b0def0f802266d4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 1:40:14 AM UTC  (today)

File size:
5 MB (5,195,832 bytes)

Product version:
6.7.1.1

Copyright:
Copyright (C) 2004-2016 Bogdan Shulga (LLC SysDev Laboratories)

Original file name:
rangel-win.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\복구천사\r-angel-windows.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
3/16/2016 9:00:00 AM

Valid to:
9/20/2016 8:59:59 AM

Subject:
CN=LLC SysDev Laboratories, O=LLC SysDev Laboratories, L=Donetsk, S=Donetsk Oblast, C=UA

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
54A4321E51EA5920E59ADD72A731F485

File PE Metadata
Compilation timestamp:
7/21/2016 9:39:50 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:GFE1ji4ztrztK/mi4EgB7TKhfMvSxK57ITm6RjrkE+I:jjjh3Emi4EMmxMvp5UnRnkEH

Entry address:
0x1A3902

Entry point:
E8, 86, 53, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, 7D, 08, 00, 74, 2D, FF, 75, 08, 6A, 00, FF, 35, B8, 5F, 8B, 00, FF, 15, 18, 72, 67, 00, 85, C0, 75, 18, 56, E8, 38, 54, 00, 00, 8B, F0, FF, 15, A4, 70, 67, 00, 50, E8, E8, 53, 00, 00, 59, 89, 06, 5E, 5D, C3, 8B, FF, 55, 8B, EC, 53, 8B, 5D, 08, 83, FB, E0, 77, 6F, 56, 57, 83, 3D, B8, 5F, 8B, 00, 00, 75, 18, E8, 7C, 3D, 00, 00, 6A, 1E, E8, C6, 3B, 00, 00, 68, FF, 00, 00, 00, E8, C9, 42, 00, 00, 59, 59, 85, DB, 74, 04, 8B, C3, EB, 03, 33, C0, 40...
 
[+]

Entropy:
6.6727

Code size:
2.5 MB (2,579,968 bytes)

Scan r-angel-windows.exe - Powered by Reason Core Security