mCodexDLLStub.exe

MagicRAR 8.0

MagicRAR

Publisher:
Simon King  (signed by MagicRAR)

Product:
MagicRAR 8.0

Description:
Codex DLL Function Call Stub for External Processes

Version:
2.0.2013.1453

MD5:
ee9c7bad76a4fdb5f0b357fad2763ee6

SHA-1:
af8d16ee01a1dd946a2df77bf96968a4ad20ba88

SHA-256:
4cc0e5ba0bfb002deddcdc2667c3cc99c324bd958cab6b8899078cc82f4fb9ac

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/25/2024 10:49:13 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win-Trojan/Malpacked4.Gen
2014.08.30

File size:
538 KB (550,880 bytes)

Product version:
10.0.0.2013

Copyright:
Copyright© 2013 Simon King. All rights reserved.

Trademarks:
Simon King and Codex are trademarks or registered trademarks of Simon King.

Original file name:
mCodexDLLStub.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Windows\System32\mcodexdllstub.exe

Digital Signature
Signed by:

Authority:
Unizeto Technologies S.A.

Valid from:
8/20/2012 4:39:34 AM

Valid to:
8/20/2013 4:39:34 AM

Subject:
E=rarmagic@gmail.com, CN="Open Source Developer,Simon KING", O=MagicRAR, C=US

Issuer:
CN=Certum Level III CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
4FBB8FD1224917F1AEF6D267E38EFB3E

File PE Metadata
Compilation timestamp:
6/20/1992 3:52:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:QQzq7tI6QhC3ua/gkwC2XePu6HwJDKUN9b0Vp13gaQjIOtFTpVjDqQD9XFSUkO:DkI6QhC3tsRePu6Hsy3XQj/xA6

Entry address:
0x1E6B8

Entry point:
55, 8B, EC, B9, 36, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, 56, 57, B8, 08, E6, 41, 00, E8, 37, 7A, FE, FF, 33, C0, 55, 68, 50, F7, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 1E, F7, 41, 00, 64, FF, 32, 64, 89, 22, E8, 1A, 46, FE, FF, 85, C0, 75, 0A, E8, F5, 57, FE, FF, E9, 21, 10, 00, 00, 8D, 55, EC, B8, 01, 00, 00, 00, E8, 67, 46, FE, FF, 8B, 45, EC, BA, 68, F7, 41, 00, E8, DA, 60, FE, FF, 0F, 85, FD, 09, 00, 00, 8D, 55, E8, B8, 02, 00, 00, 00, E8, 47, 46, FE, FF, 8B, 45, E8, BA, 74, F7, 41...
 
[+]

Entropy:
5.7590

Developed / compiled with:
Microsoft Visual C++

Code size:
123 KB (125,952 bytes)

Scan mCodexDLLStub.exe - Powered by Reason Core Security