pr_emulator.tmp

Geselschaft fuer Softwareentwicklung und Analytik GmbH

Description:
Setup/Uninstall

Version:
51.52.0.0

MD5:
849aa19da54efa94ca487679354ae817

SHA-1:
1e979bff062e7a365eda3015b67d5372e879ee59

SHA-256:
24f74543ad7e6b7988af780ec901f71673146ae583ca6752cdf6fbbfd5366bb5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/15/2024 6:13:13 PM UTC  (today)

File size:
706.6 KB (723,576 bytes)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\pr_emulator.tmp

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/26/2015 9:00:00 PM

Valid to:
7/26/2016 8:59:59 PM

Subject:
CN=Geselschaft fuer Softwareentwicklung und Analytik GmbH, O=Geselschaft fuer Softwareentwicklung und Analytik GmbH, STREET=Krischanweg 7, L=Rostock, S=Outside United States, PostalCode=18069, C=DE

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00879684620365429D773BF394C602DF0C

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:ksMLIMoi3rPR37dzHRA6nX0D9OKWbO7SERb5rNUK1bce0syxyRy:DMcMoi3rPR37dzHRA6G7WbuSEmK50syV

Entry address:
0x9A490

Entry point:
55, 8B, EC, 83, C4, F4, 53, 56, 57, E8, A6, 8E, F6, FF, E8, FD, B1, F6, FF, E8, 4C, BF, F6, FF, E8, 67, C3, F6, FF, E8, EA, F8, F6, FF, E8, FD, 66, F7, FF, E8, 60, 69, F7, FF, E8, B7, 88, F7, FF, E8, CA, EF, F7, FF, E8, C5, AE, F8, FF, E8, D8, 56, F9, FF, E8, BF, 69, F9, FF, E8, 42, 58, FB, FF, E8, 09, 5D, FB, FF, E8, 74, 66, FB, FF, E8, 53, 7A, FB, FF, E8, 46, 94, FB, FF, E8, 5D, D3, FB, FF, E8, BC, E2, FB, FF, E8, CF, F5, FB, FF, E8, 12, AD, FC, FF, E8, A9, 35, FD, FF, E8, 5C, F9, FD, FF, E8, 63, AE, FE...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
614 KB (628,736 bytes)

Scan pr_emulator.tmp - Powered by Reason Core Security