rammap.exe

RamMap

VS Bld Lab

Publisher:
Sysinternals - www.sysinternals.com  (signed by VS Bld Lab)

Product:
RamMap

Description:
RamMap - physical memory analyzer

Version:
1.11

MD5:
34b71e975494675e7be70192f7157d81

SHA-1:
a642bc4199a39dcbc34367c324350229114b4318

SHA-256:
abea678f895efeb36792e7e90239f6462a8272d5a8502ef0e31530b08c3fda9f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 11:25:01 AM UTC  (today)

File size:
245.4 KB (251,256 bytes)

Product version:
1.11

Copyright:
Copyright © 2010-2011 Mark Russinovich and Bryce Cogswell

Original file name:
RamMap

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
MSIT Test CodeSign CA 2

Valid from:
3/6/2012 5:01:20 PM

Valid to:
3/6/2013 5:01:20 PM

Subject:
CN=VS Bld Lab

Issuer:
CN=MSIT Test CodeSign CA 2, DC=redmond, DC=corp, DC=microsoft, DC=com

Serial number:
2A1C8D4E00020020BBB1

File PE Metadata
Compilation timestamp:
6/13/2012 1:57:57 PM

OS version:
6.2

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
6144:JVDOMaHCUNKcIC6alRlLbq1+VFeREhzPZpKwOntryjdyH5:3DX6C6KcIC6oRlLbqiFeRkPvK7DH5

Entry address:
0x1B521

Entry point:
E9, 00, 48, EB, 46, 05, F0, 27, F9, FF, F7, 6B, FF, BD, E8, 00, 88, 00, 00, 2D, E9, 30, 48, 0D, F2, 08, 0B, 70, B1, 69, B1, 62, B1, 39, B1, CC, 25, 03, 46, 21, B1, 44, 18, 03, F8, 01, 5B, A3, 42, FB, D1, 13, 68, C1, 60, 43, 60, 10, 60, BD, E8, 30, 88, 2D, E9, F8, 49, 0D, F2, 18, 0B, 0D, 46, 14, 46, 80, 46, F5, B1, 2B, 68, 00, 26, 00, 2B, 1A, DD, 00, 27, 6B, 68, F9, 58, FA, 18, 01, EB, 08, 03, 53, F8, 04, 3C, B3, F1, CC, 3F, 06, D1, 53, 68, 5B, 18, 53, F8, 08, 30, B3, F1, CC, 3F, 03, D0, 91, 68, 07, 98, 05...
 
[+]

Entropy:
6.6920

Packer / compiler:
Xtreme-Protector v1.05

Code size:
149.5 KB (153,088 bytes)

Scan rammap.exe - Powered by Reason Core Security