rfares.dll

Registry First Aid

Rose City Software

Publisher:
KsL Software  (signed by Rose City Software)

Product:
Registry First Aid

Description:
Registry First Aid, the easy powerful registry cleanup program

Version:
6.0.0.1386

MD5:
6a2e70233fc59fdb44603efad0aae299

SHA-1:
11797d4996aaad0bd316363ba1a8e75d78050f80

SHA-256:
757719c5c0362a489022ec5e69fa6ec9ad7db4d7a7ee682489906268e70aa656

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/26/2024 3:47:29 AM UTC  (today)

Scan engine
Detection
Engine version

ViRobot
Trojan.Win32.A.PSW-Barrio.19456[h]
2014.3.20.0

File size:
2.3 MB (2,389,560 bytes)

Product version:
6.0.0.1386

Copyright:
Copyright (c) KsL Software, 2001-2007

Original file name:
reg1aid.exe

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Digital Signature
Authority:
GeoTrust Inc.

Valid from:
1/28/2007 9:32:52 AM

Valid to:
2/11/2008 9:32:52 AM

Subject:
E=sales@infinisource.com, CN=Rose City Software, OU=Email and phone validated only., OU=Phone Validation - 1(503) 699-4096, OU=See Public S/MIME CPS www.geotrust.com/resources/CPS., OU=CPS terms incorporated by reference liability limited.

Issuer:
CN=GeoTrust True Credentials CA 2, O=GeoTrust Inc., C=US

Serial number:
1062CD

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:ky8GIjSzWLhwP17PZo7lGkzVXJEP0eqwmHAITX3iCDL5NE6W:ky8GIjSzWyP1dclGktJW0eSHAITX3iCi

Entry address:
0x3838

Entry point:
55, 8B, EC, 83, C4, B4, B8, 18, 38, 40, 00, E8, 38, FF, FF, FF, E8, 8F, F3, FF, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.2023

Developed / compiled with:
Microsoft Visual C++

Code size:
10.5 KB (10,752 bytes)

Scan rfares.dll - Powered by Reason Core Security