RESUpdaterMain.exe

Renaissance Electronic Services, LLC

It runs as a separate (within the context of its own process) windows Service named “RESUpdater”.
Publisher:
Microsoft  (signed by Renaissance Electronic Services, LLC)

Description:
RESUpdaterMain

Version:
1.0.22.0

MD5:
d6d803881813a01381995ea9620f6b4d

SHA-1:
8e374964a6a6559927ac4bddf025492aa995e3a4

SHA-256:
386a2a506206793783db353209bb6b168e150959aabb930b218596361e3c96bb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 5:44:21 PM UTC  (today)

File size:
63.6 KB (65,080 bytes)

Product version:
1.0.22.0

Copyright:
Copyright © Microsoft 2013

Original file name:
RESUpdaterMain.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\res updater\resupdatermain.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
7/18/2013 3:20:55 PM

Valid to:
7/18/2015 3:20:55 PM

Subject:
CN="Renaissance Electronic Services, LLC", O="Renaissance Electronic Services, LLC", L=Indianapolis, S=Indiana, C=US

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2B69446F9BAA04

File PE Metadata
Compilation timestamp:
12/5/2013 11:44:35 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:B2cwzYdKOX78RfyV7MCNtfaJLWVD14u6aRXYrXov37lK5hh+TVlFIQgs5kzn9A5W:IcDoOL6cMkivaRXYrX0LE5hh+TfJFTs

Entry address:
0xFAEE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.7866

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
55 KB (56,320 bytes)

Service
Display name:
RESUpdater

Type:
Win32OwnProcess

Depends on:
Spooler


Scan RESUpdaterMain.exe - Powered by Reason Core Security