sframe.exe

Gala Lab Corp.

Publisher:
Gala Lab Corp.  (signed and verified)

MD5:
6e15f4612014fc03f8b0b0b56542cf07

SHA-1:
7ef4cd0f220167a9782e83ed90756985739cb51b

SHA-256:
a87bf1ae5f56a54e6ad847711f22842bef72834bd421c667abce6d69c25ac2ad

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 10:24:13 PM UTC  (today)

File size:
4 MB (4,206,152 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\gpotato.eu\rappelz\sframe.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
8/23/2012 2:00:00 AM

Valid to:
8/24/2014 1:59:59 AM

Subject:
CN=Gala Lab Corp., OU=Tech Support Headquarters, O=Gala Lab Corp., L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
0DF9EE3CFBC6D8DEE0777F9263CE06DF

File PE Metadata
Compilation timestamp:
3/19/2013 3:17:55 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:BwMo+ovwsu/xUpD/kE2jAHVN+PXYjgsQ/Ooxe/hK4lEViO1PgHj:AjoyD/kpjINuo0FOx5KcEVxgD

Entry address:
0x1000

Entry point:
68, 01, 40, E3, 00, E8, 01, 00, 00, 00, C3, C3, 52, 88, 8D, BC, 4F, 9D, CA, EE, DD, 1F, FE, 1F, 92, A2, EB, 89, 27, 0F, 19, D6, 2D, 86, 68, 5C, 8B, CD, D5, 06, 2D, 77, BB, 41, 8A, 36, 8C, A0, 7B, 0F, D2, DE, B8, 62, 14, EA, 04, 2A, 1E, 66, 30, A0, 7B, AC, 30, 12, 16, 67, 67, D7, 32, 6C, 81, 9F, 28, 37, 88, 55, 4D, 84, AA, A4, E1, 6A, C1, 57, B7, 7D, B7, EE, 13, 04, B8, F5, 75, 1F, 95, 22, 87, 1D, BB, 9D, 33, BA, 7D, C1, C3, 2C, D2, A0, 6B, 6B, BA, 92, C1, 92, 52, 25, B1, 5E, C8, DC, DC, 2F, 99, 93, E7, AB...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
6.7 MB (7,016,448 bytes)

The file sframe.exe has been discovered within the following program.

Rappelz  by gPotato
de.rappelz.gpotato.eu
About 2% of users remove it
 
Powered by Should I Remove It?

Scan sframe.exe - Powered by Reason Core Security