RamPhantom7Utility.EXE

RamPhantom7 32 Utility

I-O DATA DEVICE, INC.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘RamPhantom7’. This is installed with RamPhantom7 32.
Publisher:
I-O DATA DEVICE, INC.  (signed and verified)

Product:
RamPhantom7 32 Utility

Description:
RamPhantom7Utility

Version:
1, 0, 2, 2

MD5:
c1e14cd1c40b720410a687c3a2b97ffc

SHA-1:
4bb9c3a0a5ffafd9429eee256266c52c961cee03

SHA-256:
bc5ba22c3637c16bfe849406409f82292f2c374062d61c36ae8470f296c3b7b5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 9:08:21 PM UTC  (today)

File size:
541.4 KB (554,352 bytes)

Product version:
1, 0, 2, 2

Copyright:
Copyright (C) 2004-2010 I-O DATA DEVICE,INC.

Original file name:
RamPhantom7Utility.EXE

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\i-o data\ramphantom7\ramphantom7utility.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/10/2009 9:00:00 AM

Valid to:
12/11/2010 8:59:59 AM

Subject:
CN="I-O DATA DEVICE, INC.", OU=Technical Support Dept., OU=Digital ID Class 3 - Microsoft Software Validation v2, O="I-O DATA DEVICE, INC.", L=Kanazawa-shi, S=Ishikawa, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
672299F4054C3D982187888CEC4809D5

File PE Metadata
Compilation timestamp:
2/4/2010 4:37:02 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:h62CQ7lGRgapCT39f2LQcsfGAYJXuLEwliVC:o2CQ78PCT39f2LfHAiXuLEwliVC

Entry address:
0x223C7

Entry point:
55, 8B, EC, 6A, FF, 68, 90, 66, 44, 00, 68, 70, 66, 42, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 44, 22, 44, 00, 33, D2, 8A, D4, 89, 15, F4, 7B, 45, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, F0, 7B, 45, 00, C1, E1, 08, 03, CA, 89, 0D, EC, 7B, 45, 00, C1, E8, 10, A3, E8, 7B, 45, 00, 6A, 01, E8, E4, 41, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, A5, 2A, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Entropy:
5.5002

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
260 KB (266,240 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
RamPhantom7

Command:
"C:\Program Files\i-o data\ramphantom7\ramphantom7utility.exe" \s


The file RamPhantom7Utility.EXE has been discovered within the following programs.

RamPhantom7 32  by I-O DATA DEVICE, INC.
About 6% of users remove it
 
Powered by Should I Remove It?

Scan RamPhantom7Utility.EXE - Powered by Reason Core Security