pcrecordplayer.exe

RHUB Communications Inc

Publisher:
RHUB Communications Inc  (signed and verified)

MD5:
6f47f8ca52e13d0392e63785ed98ea37

SHA-1:
486d0218b6c82ee2e615548f3fbbd09073741dee

SHA-256:
5530735ab5151e9ca8a93388fa6c4d835e3cab3895acb9cc717d1d6b6c9158c5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 12:36:12 AM UTC  (today)

File size:
814.6 KB (834,144 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\e-classroom\turbomeeting\pcrecordplayer.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
2/6/2013 4:00:00 PM

Valid to:
2/7/2015 3:59:59 PM

Subject:
CN=RHUB Communications Inc, O=RHUB Communications Inc, L=San Jose, S=California, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
6E50EEB4A8371F48DA665C632DA4D1DC

File PE Metadata
Compilation timestamp:
2/25/2014 3:25:56 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
12288:mcyoyswLnRYokhxYwEi0I/qN51Ni4KTHJL8r0hK27oN7To:mcyoThx30RNi4KTHxhL4I

Entry address:
0x583FD

Entry point:
E8, 47, 94, 00, 00, E9, 7F, FE, FF, FF, FF, 35, 28, 0C, 4C, 00, FF, 15, 74, D2, 47, 00, 85, C0, 74, 02, FF, D0, 6A, 19, E8, 43, 8C, 00, 00, 6A, 01, 6A, 00, E8, 40, 99, 00, 00, 83, C4, 0C, E9, 57, 99, 00, 00, 56, 6A, 04, 6A, 20, E8, 74, 9B, 00, 00, 59, 59, 8B, F0, 56, FF, 15, 78, D2, 47, 00, A3, E8, 21, 4C, 00, A3, E4, 21, 4C, 00, 85, F6, 75, 05, 6A, 18, 58, 5E, C3, 83, 26, 00, 33, C0, 5E, C3, 6A, 0C, 68, 58, FC, 49, 00, E8, 54, 57, 00, 00, E8, F0, 43, 00, 00, 83, 65, FC, 00, FF, 75, 08, E8, 23, 00, 00, 00...
 
[+]

Entropy:
6.2609

Code size:
494.5 KB (506,368 bytes)

Scan pcrecordplayer.exe - Powered by Reason Core Security