RAM+.exe

RAM+

Cyberdem531 Industries

This is a setup program which is used to install the application. The file has been seen being downloaded from download1654.mediafire.com and multiple other hosts.
Publisher:
Cyberdem531 Industries

Product:
RAM+

Version:
1.00.0001

MD5:
9573e48fda12d174cc0b3692e9419796

SHA-1:
3711b46da69e35a917818413a40f95571a3f6f90

SHA-256:
2b0310989564a9aeb744c4115074a7f68aa41e494fe1c2f3758733894bc19e8d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/21/2024 2:37:54 AM UTC  (today)

File size:
28 KB (28,672 bytes)

Product version:
1.00.0001

Original file name:
RAM+.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
12/14/2012 9:40:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
96:DRfPZ9vgj4IztBfNeMfBp6Ds/6mEjxkcM6pNdE8FiiEMTPppiQf9a+p6zMU1ZYct:NvgvfN0wyr5zFTppic6xIfiANs6z

Entry address:
0x1248

Entry point:
68, B0, 14, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, 7A, 95, 69, FD, D8, 25, 56, 46, A4, 5B, 39, C4, 02, 85, 7B, 79, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 5C, 47, 7B, 30, 30, 30, 52, 41, 4D, 00, 30, 2D, 30, 30, 00, 00, 00, 00, FF, CC, 31, 00, 04, 4E, F1, 9A, C3, 0C, 46, 4E, 40, 80, 6A, C5, F7, 3F, 08, 74, 93, BB, EE, 0B, 2D, 5D, 2E, F7, 42, 91, 4F, 40, 46, 49, BE, 82, 13, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00, AA, 00, 60, D3, 93, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
16 KB (16,384 bytes)

The file RAM+.exe has been seen being distributed by the following 3 URLs.

http://download1654.mediafire.com/5m59vgzsfjzg/.../RAM .exe

Scan RAM+.exe - Powered by Reason Core Security