RemPwdRec.EXE

Remote Password Recovery

Nsasoft US LLC

Publisher:
Nsasoft LLC.  (signed by Nsasoft US LLC)

Product:
Remote Password Recovery

Version:
1, 2, 6, 0

MD5:
61e6190d8c030208dcebc0f4b6d19739

SHA-1:
afa648496b2ddc31fcf53e74039fd764e922a03b

SHA-256:
689b14fbc66cd49582679b98db6dc71a6abfc3729e7232603acff78ea18953e8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 3:37:25 AM UTC  (today)

File size:
1.7 MB (1,824,888 bytes)

Product version:
1, 2, 6, 0

Copyright:
Copyright (C) Nsasoft LLC.

Trademarks:
Nsasoft,Nsauditor

Original file name:
RemPwdRec.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\nsasoft\remotepasswordrecovery\rempwdrec.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
11/27/2013 4:00:00 PM

Valid to:
11/28/2014 3:59:59 PM

Subject:
CN=Nsasoft US LLC, O=Nsasoft US LLC, POBox=2660, STREET=2215-B Renaissance Drive, L=Las Vegas, S=Nevada, PostalCode=89119, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
14F329982BE1A6626F48A33C38FFE5F6

File PE Metadata
Compilation timestamp:
7/11/2014 9:05:35 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
83.82

CTPH (ssdeep):
49152:rbwVjZRUuhJ76TQznkoL0V4SZ9SqKZUa3Qbqyyx:2ZR3Wp9PwUa3Df

Entry address:
0x118000

Entry point:
60, E8, 00, 00, 00, 00, 5D, 50, 51, 0F, CA, F7, D2, 9C, F7, D2, 0F, CA, EB, 0F, B9, EB, 0F, B8, EB, 07, B9, EB, 0F, 90, EB, 08, FD, EB, 0B, F2, EB, F5, EB, F6, F2, EB, 08, FD, EB, E9, F3, EB, E4, FC, E9, 9D, 0F, C9, 8B, CA, F7, D1, 59, 58, 50, 51, 0F, CA, F7, D2, 9C, F7, D2, 0F, CA, EB, 0F, B9, EB, 0F, B8, EB, 07, B9, EB, 0F, 90, EB, 08, FD, EB, 0B, F2, EB, F5, EB, F6, F2, EB, 08, FD, EB, E9, F3, EB, E4, FC, E9, 9D, 0F, C9, 8B, CA, F7, D1, 59, 58, 50, 51, 0F, CA, F7, D2, 9C, F7, D2, 0F, CA, EB, 0F, B9, EB...
 
[+]

Entropy:
7.8940

Packer / compiler:
ASPack v1.08.04

Code size:
700 KB (716,800 bytes)

Scan RemPwdRec.EXE - Powered by Reason Core Security