trueimagecmd.exe

Scan trueimagecmd.exe - Powered by Reason Core Security
MD5:
d5dc78b75047cb477d6eebae5a5b7acd

SHA-1:
49e947b28fbdec246bee359055b9e45f05ea52ee

SHA-256:
ceb535b8f63a2d022b026c73b0011fa4f03be8f11de005f6681bd4ecb62ae6ef

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/8/2016 1:07:10 AM UTC  (today)

File size:
4.2 MB (4,415,325 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\acronis\trueimageworkstation\trueimagecmd.exe

File PE Metadata
Compilation timestamp:
7/26/2006 4:30:01 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
7.10

CTPH (ssdeep):
49152:MfwHmE0LBThrO9TzXGkL33ijmQRpGIrtkDTBp72qzJV2HufoJxVy3uO3B+FHs3r:4R9LBV6Ti43i5REUi2qz1+FM7

Entry address:
0x213B77

Entry point:
6A, 18, 68, 00, EE, 72, 00, E8, 2D, 63, 00, 00, BF, 94, 00, 00, 00, 8B, C7, E8, B1, 16, 00, 00, 89, 65, E8, 8B, F4, 89, 3E, 56, FF, 15, 14, 33, 70, 00, 8B, 4E, 10, 89, 0D, 00, ED, 7A, 00, 8B, 46, 04, A3, 0C, ED, 7A, 00, 8B, 56, 08, 89, 15, 10, ED, 7A, 00, 8B, 76, 0C, 81, E6, FF, 7F, 00, 00, 89, 35, 04, ED, 7A, 00, 83, F9, 02, 74, 0C, 81, CE, 00, 80, 00, 00, 89, 35, 04, ED, 7A, 00, C1, E0, 08, 03, C2, A3, 08, ED, 7A, 00, 33, FF, 57, FF, 15, 34, 31, 70, 00, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03, C8, 81...
 
[+]

Entropy:
6.6018

Developed / compiled with:
Microsoft Visual C++ v7.0

Code size:
3 MB (3,153,920 bytes)

Scan trueimagecmd.exe - Powered by Reason Core Security