remove.exe

SANGFOR TECHNOLOGIES CO,. LTD

Publisher:
SANGFOR TECHNOLOGIES CO,. LTD  (signed and verified)

MD5:
d75fdc35646ed1741ada7dfc94fd474e

SHA-1:
cd121970211e9be5c62b6bbb4283dfcfc7143d54

SHA-256:
e405e1079284e996ec2203371b7e8ae7fb370d7ab830c2a48865e81b3985f6a0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 7:15:47 AM UTC  (today)

File size:
47.4 KB (48,496 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\sangfor\ssl\sddriver\remove.exe

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
8/29/2011 5:21:33 PM

Valid to:
9/1/2014 7:52:00 AM

Subject:
E=its@sangfor.com, CN="SANGFOR TECHNOLOGIES CO,. LTD", O="SANGFOR TECHNOLOGIES CO,. LTD", L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
08D79DB9B87CBA

File PE Metadata
Compilation timestamp:
1/31/2012 4:22:07 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
768:aj2cemQdbMSaDgatrm5e4+zuTlELkqST3:SadZaDgg6ZJlEgx3

Entry address:
0x148F

Entry point:
55, 8B, EC, 6A, FF, 68, D8, 60, 40, 00, 68, D8, 2A, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 38, 60, 40, 00, 33, D2, 8A, D4, 89, 15, E4, 9B, 40, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, E0, 9B, 40, 00, C1, E1, 08, 03, CA, 89, 0D, DC, 9B, 40, 00, C1, E8, 10, A3, D8, 9B, 40, 00, 33, F6, 56, E8, 92, 14, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 5D, 11, 00, 00, FF, 15, 34, 60, 40, 00, A3, F8, B0, 40, 00, E8...
 
[+]

Entropy:
5.2610

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
20 KB (20,480 bytes)

Scan remove.exe - Powered by Reason Core Security