RAMDA_CHG.exe

MoveProgramfilesFolder

DenkiHonpo CO.,LTD

Publisher:
DenkiHonpo CO.,LTD  (signed and verified)

Product:
MoveProgramfilesFolder

Description:
RAMDA_CHG

Version:
1, 0, 0, 0

MD5:
7a9839807d77ffd1066a4a380aa6152c

SHA-1:
651e0f7742058d165783606eca2bfd2f76c91a1f

SHA-256:
6dc748898aa844113566ce9b03386887972e5539d7720d91ed5dcb94a45dfc40

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 12:11:57 AM UTC  (today)

File size:
222 KB (227,344 bytes)

Product version:
1, 0, 0, 0

Copyright:
Copyright (C) 2009 電机本舗

Original file name:
RAMDA_CHG.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\peoplelock\ramd\ramda_chg.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
10/24/2012 6:47:51 PM

Valid to:
10/25/2013 6:47:51 PM

Subject:
E=tec@dnki.co.jp, CN="DenkiHonpo CO.,LTD", O="DenkiHonpo CO.,LTD", L=Minatoku Takanawa 1-2-16-6A, S=Tokyo, C=JP

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11213B810362C9DB048D5E090D31AF9FAA5F

File PE Metadata
Compilation timestamp:
10/24/2012 2:32:14 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:9Z9F0Vc69F9x9FIMS6fcaUADsi5EpLvvp6:9Z9o9FIYkBADsiOvx6

Entry address:
0x12C4C

Entry point:
E8, CD, 8A, 00, 00, E9, 78, FE, FF, FF, A1, D0, 0C, 43, 00, 83, C8, 01, 33, C9, 39, 05, A0, 1B, 44, 00, 0F, 94, C1, 8B, C1, C3, 75, 01, C3, 55, 8B, EC, 83, EC, 00, 50, 52, 53, 56, 57, 6A, 00, FF, 75, 04, E8, DB, 8D, 00, 00, 59, 59, 5F, 5E, 5B, 5A, 58, 8B, E5, 5D, C3, 8B, FF, 55, 8B, EC, 51, 51, 53, 56, 8B, F2, 33, DB, 39, 1E, 8B, D1, 89, 55, F8, 89, 5D, FC, 7E, 3F, 57, BF, CC, CC, CC, CC, 8B, 46, 04, 03, C3, 8B, 08, 39, 7C, 11, FC, 75, 0A, 8B, 40, 04, 03, C1, 39, 3C, 10, 74, 14, 8B, 46, 04, FF, 74, 18, 08...
 
[+]

Entropy:
6.4621

Code size:
145 KB (148,480 bytes)

Scan RAMDA_CHG.exe - Powered by Reason Core Security