ForenRpl.exe

Gilles Vollant

Publisher:
Gilles Vollant  (signed and verified)

Description:
Paraben Forensic Replicator application file

Version:
4.30.8500

MD5:
0acdcb812366484362d1f2e5c19e0ce1

SHA-1:
1d2276a33a8aec5a4fddf9c4d24aaf1e6ca7f62e

SHA-256:
4ab048b7041da5a4c2bd3965f0c5b5859642adb2d8f7854147dcdff38a720aa1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 1:50:13 AM UTC  (today)

File size:
1.3 MB (1,395,304 bytes)

Product version:
4.30.8500

Copyright:
Copyright © Paraben 1993-2013

Original file name:
ForenRpl.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\paraben corporation\forensic replicator\forenrpl.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
6/28/2011 8:17:30 PM

Valid to:
6/28/2013 8:17:30 PM

Subject:
CN=Gilles Vollant, O=Gilles Vollant, L=Savigny sur Orge, S=Ile de France, C=FR

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121B67965C65167D78D3BE54B40DA42DF21

File PE Metadata
Compilation timestamp:
4/23/2013 6:34:33 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:aHMcHiFdDbDFwuJsdqVa8ph/1rlEXFwpX9k2EASVGQRKy6:aHhCFVbDF1Jsclf//zk7A93

Entry address:
0xB72C8

Entry point:
48, 83, EC, 28, E8, CB, 96, 00, 00, 48, 83, C4, 28, E9, 52, FE, FF, FF, CC, CC, 48, 8B, C4, 48, 89, 58, 08, 48, 89, 68, 10, 48, 89, 70, 18, 48, 89, 78, 20, 41, 54, 48, 83, EC, 20, 8B, 3D, B1, EA, 04, 00, 33, ED, 48, 8B, F1, 41, 83, CC, FF, 48, 8B, CE, E8, FC, CF, FF, FF, 48, 8B, D8, 48, 85, C0, 75, 28, 85, FF, 74, 24, 8B, CD, FF, 15, D8, B0, 01, 00, 8B, 3D, 86, EA, 04, 00, 44, 8D, 9D, E8, 03, 00, 00, 44, 3B, DF, 41, 8B, EB, 41, 0F, 47, EC, 41, 3B, EC, 75, C8, 48, 8B, 6C, 24, 38, 48, 8B, 74, 24, 40, 48, 8B...
 
[+]

Entropy:
6.5587

Code size:
833 KB (852,992 bytes)

Scan ForenRpl.exe - Powered by Reason Core Security