raf.exe

Cong ty Co phan Phat trien Dich vu Hoc tap & Giai tri Truc tuyen

This is installed with Run and Fire.
Publisher:
Galaxygate  (signed by Cong ty Co phan Phat trien Dich vu Hoc tap & Giai tri Truc tuyen)

Version:
1.09.284.0

MD5:
1de91d568d1dfb45c373c944365ad6bd

SHA-1:
d99dc4dfd374c80be1f0efde2d87ac69daa4ddfa

SHA-256:
c903f0bb6f812b9447961a4eaa5d7b1cf592adf3ce704fbcd6b358efdd9e70bc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 11:59:25 AM UTC  (today)

File size:
2.3 MB (2,461,424 bytes)

Product version:
1.09.284.0

Copyright:
Galaxygate Co., Ltd.

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/21/2013 11:25:37 AM

Valid to:
11/21/2016 11:25:37 AM

Subject:
CN=Cong ty Co phan Phat trien Dich vu Hoc tap & Giai tri Truc tuyen, OU=IT Department, O=Cong ty Co phan Phat trien Dich vu Hoc tap & Giai tri Truc tuyen, L=Hanoi, S=Hanoi, C=VN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121CD62D4BEF9D9068A3489210E7D4CC5C0

File PE Metadata
Compilation timestamp:
1/5/2015 1:13:04 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:W/4fA1mmBJTRBpUJtoFqJjT+ZUCVKRm8IUcIO5:q4fA1BBJTxEtoFq/CVOmDUcI

Entry address:
0x171CC5

Entry point:
E8, 3E, 03, 00, 00, E9, 36, FD, FF, FF, CC, FF, 25, 3C, F3, 5A, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 51, 8D, 4C, 24, 04, 2B, C8, 1B, C0, F7, D0, 23, C8, 8B, C4, 25, 00, F0, FF, FF, 3B, C8, 72, 0A, 8B, C1, 59, 94, 8B, 00, 89, 04, 24, C3, 2D, 00, 10, 00, 00, 85, 00, EB, E9, CC, FF, 25, 40, F3, 5A, 00, FF, 25, 44, F3, 5A, 00, FF, 25, 48, F3, 5A, 00, FF, 25, 4C, F3, 5A, 00, FF, 25, 54, F3, 5A, 00, FF, 25, 58, F3, 5A, 00, FF, 25, 7C, F3, 5A, 00, FF, 25, 80, F3, 5A, 00, FF, 25, 98, F3, 5A, 00, FF, 25, 9C...
 
[+]

Code size:
1.7 MB (1,758,720 bytes)

The file raf.exe has been discovered within the following program.

Run and Fire  by Galaxy Gate
raf.gamexp.ru
About 2% of users remove it
 
Powered by Should I Remove It?

Scan raf.exe - Powered by Reason Core Security