client.exe

Shanghai WangHong information technology co. Ltd

Publisher:

MD5:
a542774b90ba5f860c58671098a28dda

SHA-1:
e4d9022a2210331da94ad9c77f2f852845e2c40d

SHA-256:
bcf4eafe3adaf1a7babe59691a035f5f07db91bc353d7a6c31707a30453f998f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 5:14:23 AM UTC  (today)

File size:
9.3 MB (9,720,408 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\xyzsoft\ay\client.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
3/24/2014 9:00:00 PM

Valid to:
3/28/2016 8:59:59 PM

Subject:
CN=Shanghai WangHong information technology co. Ltd, OU=Product department, O=Shanghai WangHong information technology co. Ltd, L=shanghai, S=shanghai, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
592DBFDFA89EA85EE7E718CACDB7CD6C

File PE Metadata
Compilation timestamp:
11/11/2014 7:59:36 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:iz3nplUnrlRiSYS04TA5jQHWBrhIX8kkEQnfwe4CLgSJvYAAiiVosl:D3TA5jBrhIX8kkEQnfwCLXYA5LC

Entry address:
0x6C0D87

Entry point:
E8, 2F, 67, 01, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 53, 33, DB, 39, 5D, 14, 75, 20, E8, 4D, 14, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 7A, C1, FF, FF, 83, C4, 14, 83, C8, FF, E9, 99, 00, 00, 00, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 3B, FB, 74, 21, 3B, F3, 75, 1D, E8, 1D, 14, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 4A, C1, FF, FF, 83, C4, 14, 83, C8, FF, EB, 6A, B8, FF, FF, FF, 7F, 89, 45, E4, 3B, F8, 77, 03, 89, 7D, E4, FF, 75, 1C, 8D, 45, E0, FF, 75, 18, C7...
 
[+]

Code size:
8 MB (8,422,912 bytes)

Windows Firewall Allowed Program
Name:
client.exe


Scan client.exe - Powered by Reason Core Security