cqss_20985.exe

sdfsdf

浙江欢游网络科技有限公司

Publisher:
浙江欢游网络科技有限公司  (signed and verified)

Product:
sdfsdf

Description:
sttertert

Version:
2, 0, 1, 6

MD5:
d32e35fb55d9d804d9aca75f0054a026

SHA-1:
df0cfe365e5ba6d416488e7f40e4765436fa6c6c

SHA-256:
ff53d7fd5d0eab6cb5f78ab0c0a3ec359984edfa27a4c6fb71f11e964151d28c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 1:09:45 PM UTC  (today)

File size:
1.5 MB (1,573,544 bytes)

Product version:
2, 0, 1, 6

Copyright:
Copyright 2016

Original file name:
fsdfdy.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\cqss_20985\cqss_20985.exe

Digital Signature
Authority:
WoSign CA Limited

Valid from:
4/8/2016 3:23:56 PM

Valid to:
4/8/2017 3:23:56 PM

Subject:
CN=浙江欢游网络科技有限公司, O=浙江欢游网络科技有限公司, L=金华市, S=浙江省, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA G2, O=WoSign CA Limited, C=CN

Serial number:
3F8E6B78650BC539EBF56B6C7F7E8574

File PE Metadata
Compilation timestamp:
4/15/2016 7:40:53 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:w8SlffNUIIR+Dri14SOYWzFO6/zLwXJ98hMSCbPYlBIPCO1KSJGW:FSlffSIIR+DriCR698hYUBKCVE

Entry address:
0x5E39A

Entry point:
E9, B1, 31, 06, 00, E9, CC, 8E, 00, 00, E9, C3, 1D, 05, 00, E9, 42, C3, 01, 00, E9, 8D, C3, 06, 00, E9, F8, 67, 04, 00, E9, A3, 63, 05, 00, E9, 3E, 16, 02, 00, E9, B9, F8, 06, 00, E9, 94, 2A, 0B, 00, E9, CF, 4D, 07, 00, E9, 5A, 9D, 02, 00, E9, C5, 23, 02, 00, E9, 50, FA, 09, 00, E9, 3B, 6F, 03, 00, E9, 26, 7E, 05, 00, E9, B1, 3B, 06, 00, E9, 7C, 60, 09, 00, E9, 15, 1B, 05, 00, E9, 12, 97, 03, 00, E9, ED, 8F, 02, 00, E9, 98, C1, 03, 00, E9, 93, 6D, 01, 00, E9, EE, 7E, 07, 00, E9, 79, 6B, 09, 00, E9, 44, FD...
 
[+]

Entropy:
6.4572

Developed / compiled with:
Microsoft Visual C++ 8.0 (Debug)

Code size:
753.5 KB (771,584 bytes)

Scan cqss_20985.exe - Powered by Reason Core Security