FancyCcV.exe

PrimoCache

Shanghai Romex Information Technology Co.,Ltd.

Publisher:
Romex Software  (signed by Shanghai Romex Information Technology Co.,Ltd.)

Product:
PrimoCache

Description:
PrimoCache GUI Program

Version:
2.5.0

MD5:
3e1ff2565ef537552a343346ce7baec9

SHA-1:
fb793233f344d40573a4dee3dd8a6f2a907c1c2e

SHA-256:
4a90ffe88a8d447873c0ed354bb024c700be829deaaf00d8f78b5a03679ba0b6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/5/2024 1:28:48 AM UTC  (today)

File size:
1.3 MB (1,389,120 bytes)

Product version:
2.5.0

Copyright:
(c) Romex Software. All rights reserved.

Original file name:
FancyCcV.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\primocache\fancyccv.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
6/12/2013 8:00:00 PM

Valid to:
8/17/2016 8:00:00 AM

Subject:
CN="Shanghai Romex Information Technology Co.,Ltd.", O="Shanghai Romex Information Technology Co.,Ltd.", L=Shanghai, C=CN

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
035F47A4103D1DE401314C3F452418CF

File PE Metadata
Compilation timestamp:
8/17/2016 7:08:55 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:0xaGllE/HOwtjpKrsAcBalsQ4QLnWzuOjp+7wYtSpp3i1o5zspynUc+TIxV2V+Bi:0xav1xqsAcwsu74pli1o5/mTIxV2Vv

Entry address:
0x62721

Entry point:
E8, 9B, 77, 00, 00, E9, 79, FE, FF, FF, 3B, 0D, B0, E8, 4A, 00, 75, 02, F3, C3, E9, 20, 78, 00, 00, 8B, FF, 55, 8B, EC, 8B, 45, 14, 56, 57, 33, FF, 3B, C7, 74, 47, 39, 7D, 08, 75, 1B, E8, C3, 29, 00, 00, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, 31, 11, 00, 00, 83, C4, 14, 8B, C6, EB, 29, 39, 7D, 10, 74, E0, 39, 45, 0C, 73, 0E, E8, 9E, 29, 00, 00, 6A, 22, 59, 89, 08, 8B, F1, EB, D7, 50, FF, 75, 10, FF, 75, 08, E8, D2, 78, 00, 00, 83, C4, 0C, 33, C0, 5F, 5E, 5D, C3, 8B, FF, 55, 8B, EC, 83, EC, 20, 53, 33...
 
[+]

Entropy:
6.3785

Code size:
539 KB (551,936 bytes)

Scan FancyCcV.exe - Powered by Reason Core Security