temp0_activation.exe

Release Control

Sony DADC Austria AG

Publisher:
Sony DADC Austria AG  (signed and verified)

Product:
Release Control

Description:
Release Control Unpacker

Version:
2.0.2.0

MD5:
6c8e8482265205fb604c821eda3f8b68

SHA-1:
6b6b76dfbfd715898b3c3d40b53eaf7d0764e7a7

SHA-256:
49527c4fd6cb60b4589bb1c633992b002e106e16c470145835c6d1c215a330cc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 3:55:15 PM UTC  (today)

File size:
7.9 MB (8,271,760 bytes)

Product version:
2.0.2.0

Copyright:
Copyright (C) 2011 Sony DADC Austria AG

Original file name:
RC_unpacker.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\temp0_activation.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/26/2011 5:30:00 AM

Valid to:
10/12/2014 5:29:59 AM

Subject:
CN=Sony DADC Austria AG, OU=Virtual Factory, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Sony DADC Austria AG, L=Salzburg, S=Salzburg, C=AT

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6477E8A51D1A6897261E5352F0EBE482

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
196608:SGd44EFJgzXD2X4N4Wmz+ps5Kea9y0Dtdm9FtdBkOLE:D7EDTX4N4Wmp5KeaFDQXdBkOI

Entry address:
0x3800

Entry point:
B8, EF, FF, FF, FF, 8B, 44, 04, 11, A3, EC, 26, F6, 00, 89, 25, F0, 26, F6, 00, E8, E7, D7, FF, FF, A3, 20, 4A, F8, 00, E8, 41, D9, FF, FF, A3, DC, 4A, F8, 00, 83, 3D, DC, 4A, F8, 00, 00, 75, 19, 90, 52, BA, B5, 2C, F0, 00, 90, 9C, 81, F2, B4, 2C, F0, 00, 90, 9D, 87, 14, 24, E8, 4C, 30, A1, FF, 74, 1F, B8, C3, FF, FF, FF, 8B, 80, 19, 4B, F8, 00, 8B, 80, D1, 1F, 00, 00, 25, 00, 02, 00, 00, 74, 24, E8, E4, DA, FF, FF, EB, 1D, B8, 49, FE, FF, FF, 8B, 80, 93, 4C, F8, 00, 8B, 80, D1, 1F, 00, 00, 25, 00, 02, 00...
 
[+]

Entropy:
7.7216  (probably packed)

Code size:
10.8 MB (11,329,536 bytes)

Scan temp0_activation.exe - Powered by Reason Core Security