usr.exe

USRCmdLine

Crystal Rich Ltd

Publisher:
Crystal Rich Ltd  (signed and verified)

Product:
USRCmdLine

Description:
Zentimo\USB Safely Remove command line tool

Version:
5.4.6.1244

MD5:
d6123ecff247ac997983cbc43dae339c

SHA-1:
632499fc493535daf41caba8c5783319c3f77a44

SHA-256:
5c14e661c2404e097de889e3bbc4c4486ceea9f815c037273084117ac2fbf337

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 1:46:57 PM UTC  (today)

File size:
1 MB (1,065,240 bytes)

Product version:
5.4.6.1244

Copyright:
Copyright © 2016 by Crystal Rich Ltd

File type:
Executable application (Win32 EXE)

Language:
English (United Kingdom)

Common path:
C:\users\{user}\downloads\usb.safely.remove.5.4+portable [4realtorrentz]\portable\app\usbsafelyremove\usr.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
5/22/2016 3:00:00 AM

Valid to:
2/3/2017 2:59:59 AM

Subject:
CN=Crystal Rich Ltd, O=Crystal Rich Ltd, L=Saint Petersburg, S=Saint Petersburg, C=RU

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
26C8011E27F667CF5FD468DCB4AC16BE

File PE Metadata
Compilation timestamp:
10/16/2016 5:43:12 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.25

CTPH (ssdeep):
12288:PTx0UKr0ywOavDZKzdszwRcLSM+gOxy/khjzdUmoyyH:qLcOavAzd2wRceLgOQKdUm1yH

Entry address:
0xDFFDC

Entry point:
55, 8B, EC, 83, C4, F0, A1, CC, 6A, 4E, 00, C6, 00, 01, B8, B4, 88, 4D, 00, E8, B0, B2, F2, FF, A1, 24, 65, 4E, 00, BA, 28, 00, 4E, 00, E8, 01, 79, F2, FF, A1, 0C, 6B, 4E, 00, BA, 64, 00, 4E, 00, E8, F2, 78, F2, FF, E8, 71, 75, FF, FF, E8, 38, 72, F2, FF, B0, 04, 02, 00, FF, FF, FF, FF, 17, 00, 00, 00, 68, 00, 74, 00, 74, 00, 70, 00, 3A, 00, 2F, 00, 2F, 00, 73, 00, 61, 00, 66, 00, 65, 00, 6C, 00, 79, 00, 72, 00, 65, 00, 6D, 00, 6F, 00, 76, 00, 65, 00, 2E, 00, 63, 00, 6F, 00, 6D, 00, 00, 00, B0, 04, 02, 00...
 
[+]

Entropy:
5.0074

Developed / compiled with:
Microsoft Visual C++

Code size:
890 KB (911,360 bytes)

Scan usr.exe - Powered by Reason Core Security