Partizan.exe

RegRun Security Suite, UnHackMe

Greatis Software LLC

Publisher:
Greatis Software  (signed by Greatis Software LLC)

Product:
RegRun Security Suite, UnHackMe

Description:
Partizan - First Bootwatch Anti-Rootkit

Version:
2, 2, 0, 0

MD5:
21dca64c1c60108d5064623cdc8b5e4a

SHA-1:
87f7b4052bb6d882d16eaa0d568139c11d9635da

SHA-256:
ee3354de882a4c66047148bbd127c27b9f5da191b4750ecd19ac1f36ffe0411c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 10:38:30 AM UTC  (today)

File size:
48.8 KB (49,968 bytes)

Product version:
7.9

Copyright:
Copyright © 2006-2016

Trademarks:
Partizan

Original file name:
Partizan.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\unhackme\partizan.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/4/2013 4:30:00 AM

Valid to:
11/3/2016 4:29:59 AM

Subject:
CN=Greatis Software LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Greatis Software LLC, L=Yaroslavl, S=YAROSLAVL, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5742A26DD75261476201E40AD8B8FC55

File PE Metadata
Compilation timestamp:
12/28/2015 1:01:56 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
6.0

CTPH (ssdeep):
768:3KlimIGRPIbbMMKioJIM84YquJUT5YhM3T3bmbU3Oaj:p0g/MZbUJqYhZbUj

Entry address:
0x1000

Entry point:
55, 8B, EC, 81, EC, 64, 07, 00, 00, C7, 45, B8, 00, 00, 00, 00, C7, 45, DC, 00, 00, 00, 00, C7, 45, 80, 00, 00, 00, 00, C7, 45, E0, 00, 00, 00, 00, C6, 45, E4, 00, C7, 85, E8, FE, FF, FF, 00, 00, 00, 00, C7, 85, 74, FF, FF, FF, 00, 00, 00, 00, C6, 45, F0, 00, C6, 85, AC, F8, FF, FF, 00, C7, 85, B0, F8, FF, FF, 00, 00, 00, 00, C7, 45, D4, 00, 00, 00, 00, C7, 85, F8, FE, FF, FF, 00, 00, 00, 00, C7, 45, FC, 00, 00, 00, 00, C7, 45, 98, 04, 00, 00, 00, C7, 45, 9C, 00, 00, 00, 00, C6, 85, B8, FA, FF, FF, 00, C6...
 
[+]

Entropy:
5.9327

Developed / compiled with:
Microsoft Visual C++

Code size:
18.5 KB (18,944 bytes)

Scan Partizan.exe - Powered by Reason Core Security