cardrecovery.exe

CardRecovery

WinRecovery Software

Publisher:
WinRecovery Software  (signed and verified)

Product:
CardRecovery

Version:
4.1.0.0

MD5:
844d37d7e2aed10f04594f787e4ee149

SHA-1:
58f3cabcae20a94ad4f8e3e876804e72afb7052a

SHA-256:
5e20130dfbe022b7b577fef1fc9b13d7d3dc2c2d6996d68a282e7708cbbd53a1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 3:57:21 PM UTC  (today)

File size:
519 KB (531,456 bytes)

Product version:
4.1.0.0

Copyright:
WinRecovery Software

Trademarks:
CardRecovery

Original file name:
cardrecovery.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\cardrecovery\cardrecovery.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
2/9/2006 2:00:00 AM

Valid to:
2/10/2008 1:59:59 AM

Subject:
CN=WinRecovery Software, O=WinRecovery Software, STREET=Yudao St. 29, L=Nanjing, S=JS, PostalCode=210016, C=CN

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
7A0F35A5D301113B4C50984A67E2F638

File PE Metadata
Compilation timestamp:
1/5/2008 5:27:25 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:VC6nsx6a0A/mexkea3Y0ZmoFdi3Yyq6b7MP+Dd2VrR:VC6UD02XkeN0LFdioyL7MP+h2z

Entry address:
0x1000

Entry point:
68, 01, 00, 5C, 00, E8, 01, 00, 00, 00, C3, C3, 58, CF, 98, 4C, 28, 3D, 8C, 76, 82, 33, 01, 88, B8, 71, 47, 5F, 66, E1, 4A, D5, AB, 66, 2E, 27, 0D, 0A, 0B, DD, 61, 20, 53, 93, 9E, 93, F3, EF, 69, 98, 9F, 92, D2, C9, 14, FE, C6, 99, F5, 23, 37, 3F, A8, C5, 74, C4, C7, 9A, 7F, DB, 64, C7, 19, A1, A9, C5, 19, 50, C0, BA, 4F, A9, 2E, 0D, 04, 26, 0A, 67, DB, 18, E6, 1A, AA, 54, 6A, 1F, BF, 98, 02, 15, 61, 04, D6, 3D, F0, B0, D5, 4C, EC, 6C, F2, C1, AE, 8A, 54, 56, 8B, AD, 62, 0C, 27, 1F, DF, 40, A1, 0D, D7, 66...
 
[+]

Entropy:
7.9163

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
673 KB (689,152 bytes)

Scan cardrecovery.exe - Powered by Reason Core Security