bitcomet.exe

BitComet

Xing Wang

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘BitComet’.
Publisher:
www.BitComet.com  (signed by Xing Wang)

Product:
BitComet

Description:
BitComet - a BitTorrent Client

Version:
1.37

MD5:
e08c84f1375be660ad9e280d9c15db4b

SHA-1:
cac1387e1d170efb3e9690bd9eb98ff7a1d482ee

SHA-256:
80c0272773061020329ccf4cdc2f5838cdca0e33d48eb46ccaec1a744dc876c6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 3:18:46 AM UTC  (today)

File size:
13.6 MB (14,276,784 bytes)

Product version:
1.37

Copyright:
Copyright(C) 2003-2011 All Rights Reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\bitcomet\bitcomet.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
11/26/2013 10:52:03 PM

Valid to:
11/27/2015 11:00:30 PM

Subject:
E=wxhere@hotmail.com, CN=Xing Wang, L=Shanghai, S=Shanghai, C=CN, Description=Kk6apq1up6S525U1

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0BF3

File PE Metadata
Compilation timestamp:
12/31/2013 12:37:47 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
196608:pxDx0W7VBEWez+AtHnMbnp0orI13bQ3sC5Rt1eARNx8koQGM:pP0W7VBEWLAtHnd+oA18koQGM

Entry address:
0x446701

Entry point:
E8, 34, 2E, 01, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 80, 1F, E5, 00, E8, 29, F4, 00, 00, E8, F2, 4B, 00, 00, 0F, B7, F0, 6A, 02, E8, C7, 2D, 01, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, D0, FA, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Entropy:
6.3083

Code size:
8.5 MB (8,941,568 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
BitComet

Command:
"C:\Program Files\bitcomet\bitcomet.exe" \tray


Scan bitcomet.exe - Powered by Reason Core Security