reflect.exe

Macrium Reflect

Paramount Software UK Ltd

It runs as a scheduled task under the Windows Task Scheduler.
Publisher:
Paramount Software UK Ltd  (signed and verified)

Product:
Macrium Reflect

Description:
Macrium Reflect Disk Imaging and Backup

Version:
4, 2, 3141, 0

MD5:
8fe403e7af49ea3cab09f0c12f031ca8

SHA-1:
40b37b3ec5e4ad59b0061555a5de129d49716129

SHA-256:
ec61ebdba79e6925fbb2c62aff5515da1f325ece169ce761183400232fd32bd6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 5:13:51 PM UTC  (today)

File size:
15.7 MB (16,486,040 bytes)

Product version:
4, 2, 3141, 0

Copyright:
(c) Paramount Software. All rights reserved.

Original file name:
reflect.exe

File type:
Executable application (Win64 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\macrium\reflect\reflect.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/8/2010 8:36:13 AM

Valid to:
11/8/2013 8:36:10 AM

Subject:
CN=Paramount Software UK Ltd, O=Paramount Software UK Ltd, L=Manchester, S=Greater Manchester, C=GB

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012C2C8AD4A2

File PE Metadata
Compilation timestamp:
1/17/2011 12:18:14 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:JfvIw8wNr1oO4uMGJUe5f2XiAns0VD/E4Aa+ZfmibNK3k0Enj47z64eDK5Kd00bx:Zgw8C0piAn7s44++7bKUfXmrGCI

Entry address:
0x4139C0

Entry point:
48, 83, EC, 28, E8, C7, 83, 01, 00, 48, 83, C4, 28, E9, 0E, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 89, 5C, 24, 08, 48, 89, 6C, 24, 10, 48, 89, 74, 24, 18, 48, 89, 7C, 24, 20, 41, 54, 48, 83, EC, 20, 49, 8B, 59, 38, 48, 8B, F2, 4D, 8B, E0, 48, 8B, E9, 4C, 8D, 43, 04, 49, 8B, D1, 48, 8B, CE, 49, 8B, F9, E8, F7, 0A, 00, 00, F6, 45, 04, 66, 44, 8B, 5B, 04, 75, 06, 41, 83, E3, 01, EB, 04, 41, 83, E3, 02, 45, 85, DB, 74, 13, 4C, 8B, CF, 4D, 8B, C4, 48, 8B, D6, 48, 8B, CD, E8, 7D...
 
[+]

Entropy:
5.6393

Code size:
7.5 MB (7,843,328 bytes)

Scheduled Task
Task name:
QuangCBackup xml

Trigger:
Weekly (Runs weekly on Mondays at 9:24 PM)


Scan reflect.exe - Powered by Reason Core Security