vsurogfq.002

RegRun Security Suite

Greatis Software LLC

Publisher:
Greatis Software  (signed by Greatis Software LLC)

Product:
RegRun Security Suite

Description:
Partizan - Rootkit detector

Version:
1, 0, 0, 5

MD5:
ebec459510176ac77a50b92979c4f657

SHA-1:
6eb68a3b3026fb32ee7bd892afc5b533031c031b

SHA-256:
516d88bd3e577e994bed366198756f92acf70ebf652481c15c7f869947bc7f0d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/13/2025 4:23:59 AM UTC  (today)

File size:
43.1 KB (44,168 bytes)

Product version:
6, 8, 0, 0

Copyright:
Copyright © 2007-2010

Trademarks:
Partizan

Original file name:
Partizan.sys

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\vsurogfq.002

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/4/2013 12:00:00 AM

Valid to:
11/2/2016 11:59:59 PM

Subject:
CN=Greatis Software LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Greatis Software LLC, L=Yaroslavl, S=YAROSLAVL, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5742A26DD75261476201E40AD8B8FC55

File PE Metadata
Compilation timestamp:
4/5/2010 10:59:50 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
6.0

CTPH (ssdeep):
384:/CjkC7bpF1Th0FCTKb4dvQfaWe+zXON9TAgSu2+UHeMKJRgWsG8lfQb:/CRxThRTkVaN1qWgT8

Entry address:
0x1DCB

Entry point:
55, 8B, EC, 81, EC, AC, 01, 00, 00, 56, 57, B9, 08, 00, 00, 00, BE, 80, 1C, 01, 00, 8D, BD, 0C, FF, FF, FF, F3, A5, 66, A5, B9, 0A, 00, 00, 00, BE, A4, 1C, 01, 00, 8D, BD, 48, FF, FF, FF, F3, A5, 66, A5, A1, D0, 1C, 01, 00, 89, 85, E8, FE, FF, FF, 8B, 0D, D4, 1C, 01, 00, 89, 8D, EC, FE, FF, FF, 8B, 15, D8, 1C, 01, 00, 89, 95, F0, FE, FF, FF, B9, 22, 00, 00, 00, BE, DC, 1C, 01, 00, 8D, BD, 74, FF, FF, FF, F3, A5, 66, A5, 68, 44, 64, 6B, 20, 8B, 45, 0C, 33, C9, 66, 8B, 08, 83, C1, 02, 51, 6A, 01, FF, 15, 24...
 
[+]

Entropy:
5.0707

Developed / compiled with:
Microsoft Visual C++

Code size:
12.6 KB (12,896 bytes)

Scan vsurogfq.002 - Powered by Reason Core Security