rlc 0.1.6.11.exe

Remote calc

NETKOM Mariusz Danilczuk

Publisher:
biospassword.eu  (signed by NETKOM Mariusz Danilczuk)

Product:
Remote calc

Description:
Remote bios unlocker

Version:
0.1.6.11

MD5:
550f49c60a5a33a8959bd3ce82419927

SHA-1:
6bd680ac69aa4f535dc0e6db0b6688b92bf7df10

SHA-256:
163969339fa7ff68aada0e45a8345bb158f0e978db9e6d4ceb06a8644f9d1491

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 2:53:58 AM UTC  (today)

File size:
1.6 MB (1,697,984 bytes)

Product version:
1.0.0.0

Copyright:
biospassword.eu

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\rlc 0.1.6.11.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
7/3/2013 3:00:00 AM

Valid to:
7/4/2014 2:59:59 AM

Subject:
CN=NETKOM Mariusz Danilczuk, OU=IT, O=NETKOM Mariusz Danilczuk, L=Bialystok, S=Podlaskie, C=PL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
73E0429AB83A6ED83AA70262CD673AD8

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:Jlr0dQJxkWmXtRb7SpFwaHI+9rGZXIW5aE2ADb5ZT7Y5Abb7h5JyQ0t3QW0:JSKJxRmXeyaz9Yl5aEFDHe2b7h5nW

Entry address:
0x3D5000

Entry point:
51, 89, E1, 81, C1, 04, 00, 00, 00, 83, E9, 04, 51, FF, 74, 24, 04, 59, 8F, 04, 24, 8B, 24, 24, 56, 89, E6, 81, C6, 04, 00, 00, 00, 83, EE, 04, 33, 34, 24, 31, 34, 24, 33, 34, 24, 5C, 89, 04, 24, 53, 89, E3, 81, C3, 04, 00, 00, 00, 81, EB, 04, 00, 00, 00, 87, 1C, 24, 5C, 89, 1C, 24, E8, 01, 00, 00, 00, CC, 8B, 04, 24, 68, 20, 4D, 00, 00, 89, 34, 24, 89, E6, 81, C6, 04, 00, 00, 00, 81, C6, 04, 00, 00, 00, 87, 34, 24, 5C, 57, 50, 81, 04, 24, F2, 79, 87, 26, 5F, 56, BE, F2, 79, 87, 26, 29, F7, 5E, 89, FB, 5F...
 
[+]

Entropy:
7.8596  (probably packed)

Code size:
866.5 KB (887,296 bytes)

Scan rlc 0.1.6.11.exe - Powered by Reason Core Security