RMX.exe

Reversevision

ReverseVision

Publisher:
Reversevision Inc.  (signed by ReverseVision)

Product:
Reversevision

Description:
Reversevision Application

Version:
1.0.0.0

MD5:
27cae55cc9823bbc8afaa5ca567a4cb4

SHA-1:
01cb41cac1fd121dcdc1db178aebc1734e185fff

SHA-256:
d2a234458cc2f648e6ac5011aa605a0d7b7f5e29824726e65d178d554283de72

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/3/2025 9:21:58 PM UTC  (today)

File size:
1.6 MB (1,641,696 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Reversevision Inc. 2005-2013

Original file name:
RMX.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\apps\2.0\h52ol00t.dq4\poggrr26.g8n\rmx...tion_c19485c9fc678f5e_0004.0009_87a72c56fe9701a4\rmx.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
1/29/2012 6:00:00 PM

Valid to:
1/29/2017 5:59:59 PM

Subject:
CN=ReverseVision, O=ReverseVision, STREET=3310 Pollock Pl, L=Raleigh, S=NC, PostalCode=27607, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00975D8787A1CAB2B7D6110F0543D02A95

File PE Metadata
Compilation timestamp:
9/1/2014 6:34:36 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:jsyLL1LhQgNuhKPDRO3IkZ5v02ilv8/1ZTktW1YO3IkZ51:PZeIkZ5v02Iv81Z5jIkZ51

Entry address:
0x17F5EE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, CC, 59, 04, 54, 00, 00, 00, 00, 02, 00, 00, 00, 1C, 01, 00, 00, 1C, 00, 18, 00, 1C, DA, 17, 00, 52, 53, 44, 53, 95, C6, 43, AC, 52, 57, 0F, 4E, A4, DD, 80, FC, 4E, 85, 57, E4, 01, 00, 00, 00, 43, 3A, 5C, 54, 65, 61, 6D, 43, 69, 74, 79, 5C, 62, 75, 69, 6C, 64, 41, 67, 65, 6E, 74, 5C, 77, 6F, 72, 6B, 5C, 36, 36, 65, 39, 38, 64, 33, 66, 30, 65, 33, 65, 61, 31, 30, 31, 5C, 73, 6F, 75, 72, 63, 65, 5C, 72, 6D, 78, 5C, 72, 6D...
 
[+]

Entropy:
6.3559

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
1.5 MB (1,562,112 bytes)

Scan RMX.exe - Powered by Reason Core Security