RooArr.exe

Room Arranger

Jan Adamec

This is installed with Room Arranger.
Publisher:
Jan Adamec  (signed and verified)

Product:
Room Arranger

Version:
7.0.4.288

MD5:
8a63016a277a095d882b530ab78d23a4

SHA-1:
34d265926ec71a2486fc2241cc99fcf005e73bb3

SHA-256:
6bd39a0d53da18394ff9347df8471b6e1c64e2626fe50eb9286c306748ef5f1e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 11:18:03 PM UTC  (a few moments ago)

File size:
5.3 MB (5,521,976 bytes)

Product version:
7.0.4

Original file name:
RooArr.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\room arranger\rooarr.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
6/11/2012 3:00:00 AM

Valid to:
6/12/2015 2:59:59 AM

Subject:
CN=Jan Adamec, O=Jan Adamec, STREET=Na vysine 2076/3, L=Praha 4, S=-, PostalCode=14300, C=CZ

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
40B6FCE015FA82D0BA2AF300BDDB6972

File PE Metadata
Compilation timestamp:
8/27/2012 4:33:10 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
98304:uyqgFBeDW+zqvBRV1UO+edhDLFYvBBKsT4/roRs8jdIL1tw:/qgFj+KTUOvdxL0zKsktT

Entry address:
0x1978

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, AC, 80, 80, 00, A1, 9F, 80, 80, 00, C1, E0, 02, A3, A3, 80, 80, 00, 52, 6A, 00, E8, 5D, 50, 40, 00, 8B, D0, E8, BA, 20, 3F, 00, 5A, E8, F8, 1F, 3F, 00, E8, 0B, 22, 3F, 00, 6A, 00, E8, 68, 40, 3F, 00, 59, 68, 48, 80, 80, 00, 6A, 00, E8, 37, 50, 40, 00, A3, A7, 80, 80, 00, 6A, 00, E9, 9F, 00, 40, 00, E9, 9A, 40, 3F, 00, 33, C0, A0, 91, 80, 80, 00, C3, A1, A7, 80, 80, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, EC, 00, 00, 00, 0B, C9...
 
[+]

Entropy:
6.4280

Code size:
4 MB (4,222,976 bytes)

The file RooArr.exe has been discovered within the following program.

Room Arranger  by Jan Adamec
www.roomarranger.com
About 2% of users remove it
 
Powered by Should I Remove It?

Scan RooArr.exe - Powered by Reason Core Security