rmx.32ra.exe

ra-micro Startprogramm

RA-MICRO GmbH & Co. KGaA

It runs as a scheduled task under the Windows Task Scheduler.
Publisher:
RA-MICRO GmbH & Co. KGaA  (signed and verified)

Product:
ra-micro Startprogramm

Description:
rmx.Starter

Version:
15.11.17.1

MD5:
78c2de64955a0e4f5e139b2f96eda3b8

SHA-1:
539d7f3dd5afb0a132de8a78d1b8aafa29833b48

SHA-256:
21f9980d5b657d3505151753debebdee200963d3801ecd6ffc8b9b65479125ba

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 4:30:54 AM UTC  (today)

File size:
395.7 MB (414,973,704 bytes)

Product version:
15.11.17.1

Copyright:
Copyright © RA-MICRO GmbH & Co KGaA

Original file name:
rmxStarter.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/5/2013 10:16:43 AM

Valid to:
4/5/2016 10:16:43 AM

Subject:
CN=RA-MICRO GmbH & Co. KGaA, O=RA-MICRO GmbH & Co. KGaA, L=Berlin, C=DE

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11210B6A8FC260B1FE48FE2A674D2E9943C6

File PE Metadata
Compilation timestamp:
12/28/2015 4:57:24 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12582912:l7k+tCxcpcMh4h0tRM5hQs5pTE/UZCxjC:l7k+tCxMhhtyvHpJZCk

Entry address:
0x49B7

Entry point:
55, 8B, EC, 83, E4, F8, 81, EC, 8C, 04, 00, 00, 33, C0, 53, 56, 57, 89, 44, 24, 24, 89, 44, 24, 3C, 89, 44, 24, 10, 89, 44, 24, 18, 89, 44, 24, 0C, 89, 44, 24, 14, 89, 44, 24, 2C, 89, 44, 24, 28, E8, 78, F4, FF, FF, 8B, 35, 0C, 10, 43, 00, FF, D6, 83, E0, 11, BB, 30, 60, 40, 00, 3D, 11, 01, 00, 00, 0F, 84, B8, 03, 00, 00, FF, D6, A3, 2C, 60, 40, 00, E8, 44, F9, FF, FF, 8B, C8, 2B, 0D, 2C, 60, 40, 00, 6A, 03, 33, D2, 8B, C1, 5E, BF, 00, 80, FF, FF, F7, F6, 85, CF, 0F, 85, 2A, 02, 00, 00, E8, 9E, 06, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
20 KB (20,480 bytes)

Scheduled Task
Task name:
{0CFF92A6-773D-4135-A4B7-62F2DF96707C}

Trigger:
Registration (Runs on registration)


Scan rmx.32ra.exe - Powered by Reason Core Security