RMX.exe

Reversevision

ReverseVision

Publisher:
Reversevision Inc.  (signed by ReverseVision)

Product:
Reversevision

Description:
Reversevision Application

Version:
1.0.0.0

MD5:
9aa942729892c1c16e4bf8f62237bd0f

SHA-1:
fad3ba24e70904bdbeef75811bb236debfccbee7

SHA-256:
540342e1eae2989493e934dc2b78f86911de6099686dea275871476e09b9d5fa

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/3/2025 9:39:31 PM UTC  (today)

File size:
1.5 MB (1,575,784 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Reversevision Inc. 2005-2013

Original file name:
RMX.exe

File type:
Executable application (Win64 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\apps\2.0\1aa4a4nj.9kw\64oml2zc.bdw\rmx...tion_c19485c9fc678f5e_0005.0008_bc145d5adde83764\rmx.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
1/29/2012 4:00:00 PM

Valid to:
1/29/2017 3:59:59 PM

Subject:
CN=ReverseVision, O=ReverseVision, STREET=3310 Pollock Pl, L=Raleigh, S=NC, PostalCode=27607, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00975D8787A1CAB2B7D6110F0543D02A95

File PE Metadata
Compilation timestamp:
1/11/2016 7:54:32 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
80.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:NWeeZsq7oIYnf3h90DtO3IkZ5vL2ilv8/1Zax3IkZER:Uv100SIkZ5vL2Iv81ZgIkZER

Entry address:
0x16F316

Entry point:
4D, 5A, 90, 00, 03, 00, 00, 00, 04, 00, 00, 00, FF, FF, 00, 00, B8, 00, 00, 00, 00, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 80, 00, 00, 00, 0E, 1F, BA, 0E, 00, B4, 09, CD, 21, B8, 01, 4C, CD, 21, 54, 68, 69, 73, 20, 70, 72, 6F, 67, 72, 61, 6D, 20, 63, 61, 6E, 6E, 6F, 74, 20, 62, 65, 20, 72, 75, 6E, 20, 69, 6E, 20, 44, 4F, 53, 20, 6D, 6F, 64, 65, 2E, 0D, 0D, 0A, 24, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4241

Code size:
1.4 MB (1,496,064 bytes)

Scan RMX.exe - Powered by Reason Core Security