sframe.exe

Gala Lab Corp.

Publisher:
Gala Lab Corp.  (signed and verified)

MD5:
8f485515cece1403fb5433ff7147a890

SHA-1:
086b46d6ee7002ad516effa1ef23a6687a7712dd

SHA-256:
0c303fb627ef63d331cfc74625a4edf89ae0468b562e9f49c784b7d538e30139

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 1:45:19 AM UTC  (today)

File size:
4 MB (4,202,568 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\sframe.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
8/23/2012 2:00:00 AM

Valid to:
8/24/2014 1:59:59 AM

Subject:
CN=Gala Lab Corp., OU=Tech Support Headquarters, O=Gala Lab Corp., L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
0DF9EE3CFBC6D8DEE0777F9263CE06DF

File PE Metadata
Compilation timestamp:
1/17/2013 9:42:09 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x1000

Entry point:
68, 01, 30, E3, 00, E8, 01, 00, 00, 00, C3, C3, 51, 45, 04, 8A, 52, B4, E8, B2, 41, F6, C2, 56, 6D, 05, 0C, F8, EA, 1D, 52, 02, 73, B4, 1B, 4A, 0B, E0, 4F, 7C, 3C, 2A, DA, 22, DB, 9F, 59, 52, 06, 55, A9, DA, 95, F4, 6D, 72, 8C, 85, 62, EF, D2, 51, F1, 3C, 62, 0C, E1, E1, 16, 8B, C0, 1E, 2D, C9, 69, F0, 46, CD, 8D, 80, 52, 55, FC, 96, 1C, 39, A7, 50, 58, 9F, 12, 73, 22, A0, 86, 18, DA, 83, 50, C7, 1D, 47, 1E, 46, 66, 8E, A7, B1, 99, 26, BE, 11, 62, 0F, 3E, F3, 17, 66, 56, 56, 03, 45, BA, C9, C9, D6, 65, E6...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
6.7 MB (7,012,352 bytes)

Scan sframe.exe - Powered by Reason Core Security