reflect.exe

Macrium Reflect

Paramount Software UK Ltd

Publisher:
Paramount Software UK Ltd  (signed and verified)

Product:
Macrium Reflect

Description:
Macrium Reflect Disk Imaging and Backup

Version:
7, 0, 2055, 0

MD5:
33c2b76dcecd8493395ebad4150d68d1

SHA-1:
2f1bab0c23775746849858ec561facde6e70e023

SHA-256:
a511eb292a424157f3c3c488f6373c4e635c4adc3ef4d1615d10ed76d1bedf04

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
3/13/2025 8:01:16 PM UTC  (today)

File size:
293.8 KB (300,840 bytes)

Product version:
7, 0, 2055, 0

Copyright:
(c) Paramount Software. All rights reserved.

Original file name:
ReflectLauncher.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\macrium\reflect\reflect.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
2/16/2017 10:47:48 AM

Valid to:
3/24/2020 3:06:23 PM

Subject:
CN=Paramount Software UK Ltd, O=Paramount Software UK Ltd, L=Manchester, S=Greater Manchester, C=GB

Issuer:
CN=GlobalSign CodeSigning CA - G3, O=GlobalSign nv-sa, C=BE

Serial number:
7C4BA269A79BFCBA77F289AA

File PE Metadata
Compilation timestamp:
3/10/2017 9:22:55 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0xAEEF

Entry point:
E8, AB, 3B, 00, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, 8D, 45, 10, 50, 6A, 00, FF, 75, 0C, FF, 75, 08, 68, 6C, F2, 40, 00, E8, 05, 00, 00, 00, 83, C4, 14, 5D, C3, 55, 8B, EC, 83, EC, 20, 83, 65, E0, 00, 56, 8B, 75, 0C, 57, 6A, 07, 33, C0, 59, 8D, 7D, E4, F3, AB, 85, F6, 75, 15, E8, AE, 1D, 00, 00, C7, 00, 16, 00, 00, 00, E8, 34, 1D, 00, 00, 83, C8, FF, EB, 41, 39, 45, 10, 74, E6, 56, E8, 21, 42, 00, 00, 59, C7, 45, EC, 49, 00, 00, 00, 89, 75, E8, 89, 75, E0, 3D, FF, FF, FF, 3F, 76, 09, C7, 45, E4, FF, FF, FF...
 
[+]

Code size:
93 KB (95,232 bytes)

Startup File (All Users Run Once)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Name:
MacriumRunOnce

Command:
"C:\Program Files\macrium\reflect\reflect.exe" -q


Scan reflect.exe - Powered by Reason Core Security