SUPERRAMTRAY.EXE

SuperRam

PGWARE LLC

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘SuperRam’.
Publisher:
PGWARE LLC  (signed and verified)

Product:
SuperRam

Description:
SuperRam Tray Applet

Version:
6.0.0.0

MD5:
3ff4015bab11f18192c558e5c76a52de

SHA-1:
3728703f8b6e8e40078ce3f33584f3df862fcff8

SHA-256:
f808ea92f015a916e26f1848f5693df21c31629b5017a0a1d96f2efeeb6aceaf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 9:42:47 AM UTC  (today)

File size:
1.9 MB (1,955,992 bytes)

Product version:
6.0.0.0

Copyright:
Copyright © 2001-2016 PGWARE LLC

Original file name:
SUPERRAMTRAY.EXE

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\pgware\superram\superramtray.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
8/2/2013 2:00:00 AM

Valid to:
8/2/2016 1:59:59 AM

Subject:
CN=PGWARE LLC, O=PGWARE LLC, STREET=3610 Jubilee St, L=Norman, S=OK, PostalCode=73072, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00E52CDEF62F34DC4A4E0DB68E4D2903F4

File PE Metadata
Compilation timestamp:
2/8/2016 7:34:38 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:0bi+qSwH7Ri6s88/BpjyBKSzRHsKLqQuW8ZpuGoIu4+obQO:5jffNsSzmKkpVu4pT

Entry address:
0x12E3B4

Entry point:
55, 8B, EC, B9, 05, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, B8, E0, 65, 52, 00, E8, 4A, BE, ED, FF, 33, C0, 55, 68, 29, E5, 52, 00, 64, FF, 30, 64, 89, 20, 33, D2, 33, C0, E8, BB, 53, FF, FF, 84, C0, 75, 36, E8, CA, 5F, FF, FF, 83, F8, 05, 7F, 2C, 8D, 55, E8, 33, C0, E8, BF, 61, ED, FF, 8B, 45, E8, 8D, 55, EC, E8, 6C, 51, EE, FF, 8D, 45, EC, BA, 44, E5, 52, 00, E8, 2B, 8A, ED, FF, 8B, 45, EC, 33, D2, E8, 71, DD, F8, FF, BB, 02, 00, 00, 80, B8, 40, 94, 53, 00, BA, 7C, E5, 52, 00, E8, 01, 86, ED, FF, 8D...
 
[+]

Entropy:
6.0100

Developed / compiled with:
Microsoft Visual C++

Code size:
1.2 MB (1,234,944 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
SuperRam

Command:
"C:\Program Files\pgware\superram\superramtray.exe" \start


Scan SUPERRAMTRAY.EXE - Powered by Reason Core Security