sframe.exe

Gala Lab

Publisher:
Gala Lab  (signed and verified)

MD5:
fe39a6d801081e4fc93d473780e1e449

SHA-1:
acfdb589c8f75436ba57adddcc3c80914c401f30

SHA-256:
1bf568ed3a2036e14458146da78c3196a0c2c06a96abfb837dfa3a753a40d23e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 9:47:43 PM UTC  (today)

File size:
3.9 MB (4,060,760 bytes)

File type:
Executable application (Win32 EXE)

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
8/25/2010 3:00:00 AM

Valid to:
8/25/2012 2:59:59 AM

Subject:
CN=Gala Lab, OU=Tech Support Headquarters, O=Gala Lab, L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
69CBF2716573D8320C4523E455080837

File PE Metadata
Compilation timestamp:
4/17/2012 5:38:37 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:0Rj+NX2YX3O/nS22obLsHJtnyJnjWGulxesdRVap/F7SJFQGshcBVn4FzEViO1Mx:0RKNR3Mi00nHlx527SJuq4lEViO1Mx

Entry address:
0x1000

Entry point:
68, 01, 30, DD, 00, E8, 01, 00, 00, 00, C3, C3, 53, D9, 72, FF, 1C, F0, 39, 84, 9C, 5C, EF, 2E, 28, 62, 9F, 95, F4, BF, E6, DD, 1F, F7, 24, 7A, C5, FE, 8C, 2B, 8A, DE, 63, F8, 3B, 1B, 4F, 30, D1, 6D, 2B, C0, D6, 6F, A5, 05, 1C, 60, 57, CB, FE, D9, BC, C2, 13, 80, 6E, AD, CB, 59, 4D, 62, E4, A6, E9, FA, A0, 1A, 97, 45, B1, EF, A1, 4D, CE, 9C, 20, 09, 21, 1B, F8, D7, EC, 1C, C4, 34, A4, C9, E9, E9, 19, F5, D4, 4E, A4, 3D, 4D, 6B, 62, DB, 4B, AE, 49, 58, B3, 8D, 10, 6F, 30, E7, 39, FF, C6, C6, 4E, 2E, 06, 6C...
 
[+]

Entropy:
7.9347

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
6.4 MB (6,684,672 bytes)

Scan sframe.exe - Powered by Reason Core Security