sframe.exe

Gala Lab Corp.

Publisher:
Gala Lab Corp.  (signed and verified)

MD5:
c28c1fb5a853c99b1f1bb35be9ce4818

SHA-1:
d7afe4fb8fbe6a4ad8e0fd352e32caecb8b94fed

SHA-256:
a51754940d85297080ec72acfc11d42a44294f2c002e728f476cd9d5dabcb4d3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 2:17:43 AM UTC  (today)

File size:
4 MB (4,200,080 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\gpotato.eu\rappelz\sframe.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
8/23/2012 2:00:00 AM

Valid to:
8/24/2014 1:59:59 AM

Subject:
CN=Gala Lab Corp., OU=Tech Support Headquarters, O=Gala Lab Corp., L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
0DF9EE3CFBC6D8DEE0777F9263CE06DF

File PE Metadata
Compilation timestamp:
11/16/2012 1:30:00 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x1000

Entry point:
68, 01, 20, E3, 00, E8, 01, 00, 00, 00, C3, C3, 92, B9, 41, 0F, E9, 75, D5, 6A, 10, 17, D7, 39, 5D, B0, 4A, 2C, 30, 2E, B6, DB, EB, BC, 36, 97, 37, A1, E8, 35, 52, 98, E8, 87, CE, D3, 1B, D5, E2, 87, 05, 60, DA, FF, 8A, 83, 4F, 45, E0, 83, 2A, 66, 17, 1F, EE, 1E, 4D, F1, BE, 1A, 4A, B5, C2, 77, E5, C5, 32, F3, 51, AD, 82, 26, 37, 96, 99, 2F, 85, 89, 92, AD, 91, FA, 60, 10, 53, 30, 70, 24, 2B, 6C, 83, DE, B2, 91, 0F, 5B, D3, C7, CD, 17, 66, 78, 26, 99, EE, 30, C5, 84, 33, B3, EC, 6F, 2A, 10, 6F, 21, BE, 6E...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
6.7 MB (7,008,256 bytes)

The file sframe.exe has been discovered within the following program.

Rappelz  by gPotato
de.rappelz.gpotato.eu
About 2% of users remove it
 
Powered by Should I Remove It?

Scan sframe.exe - Powered by Reason Core Security