winresume.exe

System operacyjny Microsoft Windows

JG

Publisher:
Microsoft Corporation  (signed by JG)

Product:
System operacyjny Microsoft® Windows®

Description:
Wznów działanie aplikacji rozruchu z trybu hibernacji

Version:
6.1.7600.16385 (win7_rtm.090713-1255)

MD5:
44ea50b24d67ddc5272041e354cb8cc4

SHA-1:
703fab3b64b1872152fb82823f39cf2fb3451886

SHA-256:
e365898c88adb926628df8ce63749a84c85e4b59fcab86c7ad434ac64befe22f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/30/2024 12:21:50 AM UTC  (today)

File size:
425.1 KB (435,304 bytes)

Product version:
6.1.7600.16385

Copyright:
© Microsoft Corporation. Wszelkie prawa zastrzeżone.

Original file name:
hiberrsm.exe.mui

File type:
Executable application (Win32 EXE)

Language:
Polish (Poland)

Common path:
C:\Windows\System32\winresume.exe

Digital Signature
Signed by:

Authority:
JG Certificate Authority

Valid from:
10/14/2011 11:28:49 PM

Valid to:
10/14/2041 11:28:49 PM

Subject:
CN=JG

Issuer:
CN=JG Certificate Authority

Serial number:
7135B3B519FCF84E6C1E095498329B06

File PE Metadata
Compilation timestamp:
11/20/2010 9:38:09 AM

OS bitness:
Win32

Subsystem:

Linker version:
9.0

CTPH (ssdeep):
12288:pd2myy6pO06rxcp9wXeHYrRo8XubPmqvSmfsb8z2sPqn6j3:6mMpO0EupOaEb8D+6T

Entry address:
0x1000

Entry point:
8B, FF, 55, 8B, EC, 8B, 55, 08, 83, EC, 3C, 53, 8B, 5A, 34, 56, 57, 03, DA, 6A, 07, 33, C0, 59, 8B, FB, F3, AB, C7, 03, 01, 00, 00, 00, 8B, 42, 28, 03, C2, 6A, 08, BF, 64, EE, 45, 00, 8B, F0, 59, 33, D2, F3, A6, 74, 0D, B8, F7, 00, 00, C0, 89, 43, 04, E9, AB, 00, 00, 00, 8D, 4D, FF, 51, 68, 04, 00, 00, 26, 83, C0, 2C, 50, E8, F8, F0, 01, 00, 85, C0, 7D, 07, B8, 0D, 00, 00, C0, EB, DB, 33, C0, 38, 45, FF, 6A, 07, 0F, 95, C0, 33, C9, 89, 4D, F0, 89, 4D, F4, 89, 4D, F8, 59, 8D, 75, E0, 40, 8D, 7D, C4, C7, 45...
 
[+]

Code size:
345.5 KB (353,792 bytes)

Scan winresume.exe - Powered by Reason Core Security