RMX.exe

Reversevision

ReverseVision

Publisher:
Reversevision Inc.  (signed by ReverseVision)

Product:
Reversevision

Description:
Reversevision Application

Version:
1.0.0.0

MD5:
37f0ce2eca5b7bc5f89bbb7b2fb1296b

SHA-1:
5ec923865ebb62c877ab30ee19d0727719a8ec80

SHA-256:
3d984ba1651429ab16d9d907f0f0dc23a299c1617907907ce792f37fd5a870f0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/3/2025 9:16:20 PM UTC  (today)

File size:
1.5 MB (1,575,272 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Reversevision Inc. 2005-2013

Original file name:
RMX.exe

File type:
Executable application (Win64 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\apps\2.0\qyawcbjt.k0m\alrht5cz.r45\rmx...tion_c19485c9fc678f5e_0005.0007_e4163f150b7a06e4\rmx.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
1/29/2012 7:00:00 PM

Valid to:
1/29/2017 6:59:59 PM

Subject:
CN=ReverseVision, O=ReverseVision, STREET=3310 Pollock Pl, L=Raleigh, S=NC, PostalCode=27607, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00975D8787A1CAB2B7D6110F0543D02A95

File PE Metadata
Compilation timestamp:
12/17/2015 10:20:19 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
80.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:l9gOPs7GwXVN9rDtO3IkZ5vL2ilv8/1Zxx3IkZEG:z/gzrSIkZ5vL2Iv81ZjIkZEG

Entry address:
0x16F1D2

Entry point:
4D, 5A, 90, 00, 03, 00, 00, 00, 04, 00, 00, 00, FF, FF, 00, 00, B8, 00, 00, 00, 00, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 80, 00, 00, 00, 0E, 1F, BA, 0E, 00, B4, 09, CD, 21, B8, 01, 4C, CD, 21, 54, 68, 69, 73, 20, 70, 72, 6F, 67, 72, 61, 6D, 20, 63, 61, 6E, 6E, 6F, 74, 20, 62, 65, 20, 72, 75, 6E, 20, 69, 6E, 20, 44, 4F, 53, 20, 6D, 6F, 64, 65, 2E, 0D, 0D, 0A, 24, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4250

Code size:
1.4 MB (1,495,552 bytes)

Scan RMX.exe - Powered by Reason Core Security