cardrecovery.exe

CardRecovery

WinRecovery Software

Publisher:
WinRecovery Software  (signed and verified)

Product:
CardRecovery

Version:
3.5.0.0

MD5:
b50cce165d7c6a799179988a70bb863c

SHA-1:
a004e486a2c99c996fdbe46ecc6c6ab9bddd4bd9

SHA-256:
24752adac26e915a1018a6185b2b5b0e88772e12e49fb128a5450efd71a22101

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 12:26:30 AM UTC  (today)

File size:
515 KB (527,360 bytes)

Product version:
3.5.0.0

Copyright:
WinRecovery Software

Trademarks:
CardRecovery

Original file name:
cardrecovery.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\cardrecovery\cardrecovery.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
2/8/2006 6:00:00 PM

Valid to:
2/9/2008 5:59:59 PM

Subject:
CN=WinRecovery Software, O=WinRecovery Software, STREET=Yudao St. 29, L=Nanjing, S=JS, PostalCode=210016, C=CN

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
7A0F35A5D301113B4C50984A67E2F638

File PE Metadata
Compilation timestamp:
8/15/2007 10:22:10 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:TB/F4G8PWZA0eb6TqOD+ZmoXozYu0e/xOq6b7MP+Dd2g1v6:TB/QPz0WOD+LMB0e/YL7MP+h2l

Entry address:
0x1000

Entry point:
68, 01, E0, 5B, 00, E8, 01, 00, 00, 00, C3, C3, 58, CF, 98, 4C, 28, 3D, 8C, 76, 80, 61, 1A, 87, DE, 77, 9E, 1F, A0, D0, CD, B0, 1F, C3, 1C, B9, 44, F1, 0E, 0A, BA, 61, 0F, 1F, 14, 6D, 53, 9B, BB, BB, B5, 79, 8A, FC, EB, 6B, BF, BF, 5D, 57, 9B, 53, A4, C6, 09, 24, C7, 49, 3C, B2, 8E, C7, 19, A1, A7, C5, 19, 58, BF, 19, 83, 05, 79, DE, 30, 6C, 82, 97, 9A, 29, 0B, A6, AA, 68, 23, AC, 61, AE, 77, 6A, 54, 3E, E5, 99, 14, B4, BF, 82, 44, 8E, DA, 92, 96, 05, 52, 30, D3, 35, A3, 4A, 33, 65, 1B, 70, E3, 51, B6, 04...
 
[+]

Entropy:
7.9160

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
667.5 KB (683,520 bytes)

Scan cardrecovery.exe - Powered by Reason Core Security