client.exe

Shanghai WangHong information technology co. Ltd

Publisher:

MD5:
16362d2b541ab1863f0b15fe5965d45f

SHA-1:
1b1461c6509140d496cd1ee4fcdec75a49685f56

SHA-256:
4a15af5fa8d5ff7db1c76d8a748dcc889daf39c19eea632fa68e583d97c212e1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 12:45:08 PM UTC  (today)

File size:
9.3 MB (9,719,896 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\xyzsoft\ay\client.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
3/25/2014 8:00:00 AM

Valid to:
3/29/2016 7:59:59 AM

Subject:
CN=Shanghai WangHong information technology co. Ltd, OU=Product department, O=Shanghai WangHong information technology co. Ltd, L=shanghai, S=shanghai, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
592DBFDFA89EA85EE7E718CACDB7CD6C

File PE Metadata
Compilation timestamp:
10/11/2014 11:12:06 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:n0VU44cysjLVSZCZk9Zb+d8lJff2kkEeDfom/1K2BLsYAATD+S:XssBZbvlJff2kkEeDf//1mYAQ9

Entry address:
0x6C0917

Entry point:
E8, 9F, 69, 01, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 53, 33, DB, 39, 5D, 14, 75, 20, E8, 4D, 14, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, DA, C3, FF, FF, 83, C4, 14, 83, C8, FF, E9, 99, 00, 00, 00, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 3B, FB, 74, 21, 3B, F3, 75, 1D, E8, 1D, 14, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, AA, C3, FF, FF, 83, C4, 14, 83, C8, FF, EB, 6A, B8, FF, FF, FF, 7F, 89, 45, E4, 3B, F8, 77, 03, 89, 7D, E4, FF, 75, 1C, 8D, 45, E0, FF, 75, 18, C7...
 
[+]

Entropy:
6.4740

Code size:
8 MB (8,422,400 bytes)

Windows Firewall Allowed Program
Name:
client.exe


Scan client.exe - Powered by Reason Core Security