installrestore32.exe

Arndt Reusch eK

Publisher:
Arndt Reusch eK  (signed and verified)

MD5:
3116513915e1559d5dec74ee68007df9

SHA-1:
d122adab543497d8f10c6997edbcce902485cb40

SHA-256:
d79c87ee040909070f2225c36069111819236b89e981fa15059d5b304f762552

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 4:31:14 PM UTC  (today)

File size:
11.1 KB (11,320 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\reuschtools\installrestore32.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
11/29/2013 7:00:00 AM

Valid to:
11/30/2015 6:59:59 AM

Subject:
CN=Arndt Reusch eK, O=Arndt Reusch eK, STREET=Herderstrasse 75, L=Reutlingen, S=Baden-Wuerttemberg, PostalCode=72762, C=DE

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
73B31E77AD903EC8EED578F41A6A496E

File PE Metadata
Compilation timestamp:
7/24/2015 10:05:34 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
192:53L228WCIeMuqEKfHix8uyMrj1s38LWM1GteXGg2uj/W:g2RCILjCx2MM8yQj/W

Entry address:
0x1000

Entry point:
55, 8B, EC, B8, 58, 10, 00, 00, E8, 43, 01, 00, 00, 53, 56, 57, 68, 00, 04, 00, 00, 8D, 85, A8, F7, FF, FF, 50, 33, F6, 56, 83, CB, FF, FF, 15, 08, 20, 40, 00, 8D, 8D, A8, F7, FF, FF, E8, C5, 00, 00, 00, 66, 89, 30, 68, 4C, 20, 40, 00, 89, 75, FC, FF, 15, 0C, 20, 40, 00, 3B, C6, 74, 1F, 68, 60, 20, 40, 00, 50, FF, 15, 10, 20, 40, 00, 8B, F8, 3B, FE, 74, 0D, 8D, 45, FC, 50, FF, 15, 04, 20, 40, 00, 50, FF, D7, 39, 75, FC, B8, 70, 20, 40, 00, 75, 05, B8, E0, 20, 40, 00, 8D, 8D, A8, F7, FF, FF, 51, 51, 50, 8D...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
512 Bytes (512 bytes)

Scan installrestore32.exe - Powered by Reason Core Security