BrokerProcess.exe

BrokerProcess Module

Oxygen Cable, LLC

Publisher:
Oxygen Cable, LLC  (signed and verified)

Product:
BrokerProcess Module

Version:
1.0.0.0

MD5:
ca5a527344d16a2553af69e11d4a14a9

SHA-1:
551528308a73e08988817171798658149c23b89a

SHA-256:
6882f30caeaf7f867be9baceefb62e19b0ad03c245cff70c51b4af1d8c9ce401

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 11:22:58 AM UTC  (today)

File size:
92.8 KB (95,000 bytes)

Product version:
1.0.0.0

Copyright:
Written by Michael Dunn <acidhelm@gmail.com>

Original file name:
BrokerProcess.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\ript\brokerprocess.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/1/2007 7:00:00 PM

Valid to:
2/1/2009 6:59:59 PM

Subject:
CN="Oxygen Cable, LLC", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Oxygen Cable, LLC", L=New York, S=NewYork, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
050771C250C35082FCD9ED27A5D1FCC3

File PE Metadata
Compilation timestamp:
10/27/2007 1:42:39 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:Le0mUlz2Ryt7+MGUGS3bMbaWy+HnxEOKVLu5U5KdKSaAc2:DmrC7N3bSa2nkhqU5KdKSaa

Entry address:
0x756C

Entry point:
E8, 45, 5D, 00, 00, E9, 17, FE, FF, FF, 8B, 44, 24, 04, 33, C9, 3B, 04, CD, 08, 52, 41, 00, 74, 12, 41, 83, F9, 2D, 7C, F1, 8D, 48, ED, 83, F9, 11, 77, 0C, 6A, 0D, 58, C3, 8B, 04, CD, 0C, 52, 41, 00, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, C3, E8, A0, 22, 00, 00, 85, C0, 75, 06, B8, 70, 53, 41, 00, C3, 83, C0, 08, C3, E8, 8D, 22, 00, 00, 85, C0, 75, 06, B8, 74, 53, 41, 00, C3, 83, C0, 0C, C3, 56, E8, E7, FF, FF, FF, 8B, 4C, 24, 08, 51, 89, 08, E8, 8D, FF, FF, FF, 59, 8B, F0...
 
[+]

Entropy:
6.5078

Code size:
63 KB (64,512 bytes)

Scan BrokerProcess.exe - Powered by Reason Core Security