rgnlauncher1.2.1.exe

German Roleplay Community

This is a setup program which is used to install the application. The file has been seen being downloaded from anticheat.revival-gaming.net.
Publisher:
German Roleplay Community  (signed and verified)

MD5:
bc5b18615dc48dba2d26a17424dbf596

SHA-1:
423b78876a20c235410b8bb8f0287b7756bd8533

SHA-256:
9e87f4835e235e84c997dfd2a1d5a28bd8c2a7d3fbecf5787bae1975c999a2c5

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/19/2024 12:51:04 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.Packed
1.3.0.7717

File size:
4.1 MB (4,280,280 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\rgnlauncher1.2.1.exe

Digital Signature
Authority:
German Roleplay Community

Valid from:
1/4/2013 7:58:16 PM

Valid to:
1/1/2040 12:59:59 AM

Subject:
CN=German Roleplay Community, O=German Roleplay Community, E=admin@germanroleplay.net

Issuer:
CN=German Roleplay Community, O=German Roleplay Community, E=admin@germanroleplay.net

Serial number:
AA3276E42E5D7AAB474F15D5BB5195CE

File PE Metadata
Compilation timestamp:
2/27/2016 10:56:38 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:U8mGEnzPt5yZ7HbCsfp3ifM6CeK3+yQ3A5O6SFa1Nj:UoEnxwZTfp3N6CeKOyQ3A5O3U3j

Entry address:
0x755000

Entry point:
EB, 08, 0F, 1E, 41, 00, 00, 00, 00, 00, E9, 00, 20, 00, 00, 54, 41, 47, 47, 00, 20, 00, 00, B9, 1B, 00, 00, 01, 00, 30, 82, 1B, B5, 06, 09, 2A, 86, 48, 86, F7, 0D, 01, 07, 02, A0, 82, 1B, A6, 30, 82, 1B, A2, 02, 01, 01, 31, 09, 30, 07, 06, 05, 2B, 0E, 03, 02, 1A, 30, 82, 0F, 21, 06, 09, 2A, 86, 48, 86, F7, 0D, 01, 07, 01, A0, 82, 0F, 12, 04, 82, 0F, 0E, D0, 00, 01, 00, 01, C1, B1, A1, 02, 00, 03, 00, 07, 00, 00, 00, 26, 00, 00, 00, 01, 00, 32, 03, F9, 85, 92, CB, 34, 84, 10, 49, BE, C4, 41, EF, B5, 01, 32...
 
[+]

Code size:
444.5 KB (455,168 bytes)

The file rgnlauncher1.2.1.exe has been seen being distributed by the following URL.

Scan rgnlauncher1.2.1.exe - Powered by Reason Core Security