extractandclassify.exe

RSA DLP Endpoint

RSA Security LLC

Publisher:
RSA Security Inc.  (signed by RSA Security LLC)

Product:
RSA DLP Endpoint™

Description:
RSA DLP Endpoint

Version:
9.6.1206.13

MD5:
822e6a8fcff3a4e51c4f15fea8a00acb

SHA-1:
9667a1d2ea0c63fd69fc942ad192dc67b7a0deb6

SHA-256:
e625763dbf41e4c51fd7c21726100a73f917965c0b7eb0646a372d1616290ea3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/28/2024 11:05:40 PM UTC  (a few moments ago)

File size:
137.2 KB (140,536 bytes)

Product version:
9.6.1206.13

Copyright:
Copyright© 2001-2012 RSA Security Inc.

Trademarks:
All Rights Reserved

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\rsa\enforce\bin\extractandclassify.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
2/26/2016 12:00:00 AM

Valid to:
2/25/2017 11:59:59 PM

Subject:
CN=RSA Security LLC, OU=RSA Data Leakage Protection, O=RSA Security LLC, L=Bedford, S=Massachusetts, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
7D70CD8859973A6AF69A5A31D22A6570

File PE Metadata
Compilation timestamp:
7/13/2016 7:10:28 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
3072:4fo0ssiBJax7faRZLmqpVLXEDVpjOuIBVeDnpj:Yo0s7BJax7fsL3JmVpjCXY

Entry address:
0x98F1

Entry point:
E8, 9D, 62, 00, 00, E9, 95, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 33, C9, 3B, 04, CD, 68, E4, 41, 00, 74, 13, 41, 83, F9, 2D, 72, F1, 8D, 48, ED, 83, F9, 11, 77, 0E, 6A, 0D, 58, 5D, C3, 8B, 04, CD, 6C, E4, 41, 00, 5D, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, 5D, C3, E8, 20, 49, 00, 00, 85, C0, 75, 06, B8, D0, E5, 41, 00, C3, 83, C0, 08, C3, E8, 0D, 49, 00, 00, 85, C0, 75, 06, B8, D4, E5, 41, 00, C3, 83, C0, 0C, C3, 8B, FF, 55, 8B, EC, 56, E8, E2, FF, FF, FF, 8B, 4D, 08...
 
[+]

Entropy:
6.4157

Code size:
90.5 KB (92,672 bytes)

Scan extractandclassify.exe - Powered by Reason Core Security