activediskimage.exe

Active@ Disk Image

LSoft Technologies Inc

Publisher:
LSoft Technologies Inc.  (signed by LSoft Technologies Inc)

Product:
Active@ Disk Image

Version:
5, 4, 2, 0

MD5:
b9e1cd9a5c700ed533751f0a127861e3

SHA-1:
a6698926eabac47111072bad2b46ff3a2af846de

SHA-256:
1d282e54428c9e00e96ecacc995e82d426bc4cd68bd57a997aa6f4beb169f61d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 8:11:20 AM UTC  (today)

File size:
3.9 MB (4,139,760 bytes)

Product version:
5, 4, 2, 0

Copyright:
(c) 1999-2012 Active Data Recovery Software

Trademarks:
Active Data Recovery Services is a registered business name of LSoft Technologies Inc

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\s-1-5-31-1286970278978-5713669491-166975984-320\rotinom\activediskimage\activediskimage.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
5/16/2011 7:00:00 AM

Valid to:
6/3/2013 6:59:59 AM

Subject:
CN=LSoft Technologies Inc, OU=ACTIVE DATA RECOVERY SOFTWARE, O=LSoft Technologies Inc, L=Mississauga, S=Ontario, C=CA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
474F22BB1406AE802337B24A7C8576AD

File PE Metadata
Compilation timestamp:
12/15/2012 6:02:36 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
83.82

CTPH (ssdeep):
49152:EV8i547kQlDJqD/CYT8G6rPvD1xN+sKyk3oi2Huyn1AwEb8c9DMBuK:X7kYD6VwG6r3DX0YRxiw/CDMBuK

Entry address:
0x38A000

Entry point:
60, E8, 00, 00, 00, 00, 5D, 50, 51, 0F, CA, F7, D2, 9C, F7, D2, 0F, CA, EB, 0F, B9, EB, 0F, B8, EB, 07, B9, EB, 0F, 90, EB, 08, FD, EB, 0B, F2, EB, F5, EB, F6, F2, EB, 08, FD, EB, E9, F3, EB, E4, FC, E9, 9D, 0F, C9, 8B, CA, F7, D1, 59, 58, 50, 51, 0F, CA, F7, D2, 9C, F7, D2, 0F, CA, EB, 0F, B9, EB, 0F, B8, EB, 07, B9, EB, 0F, 90, EB, 08, FD, EB, 0B, F2, EB, F5, EB, F6, F2, EB, 08, FD, EB, E9, F3, EB, E4, FC, E9, 9D, 0F, C9, 8B, CA, F7, D1, 59, 58, 50, 51, 0F, CA, F7, D2, 9C, F7, D2, 0F, CA, EB, 0F, B9, EB...
 
[+]

Entropy:
7.0557

Packer / compiler:
ASPack v1.08.04

Code size:
316 KB (323,584 bytes)

Scan activediskimage.exe - Powered by Reason Core Security