eztalks-launcher.exe

EZTalks Launcher

CUMeeting Inc

Publisher:
CUMeeting Inc  (signed and verified)

Product:
EZTalks Launcher

Version:
1, 0, 0, 6

MD5:
a8904e8c466934ccf8c4a1c5a3092f70

SHA-1:
fd68c0f0285bee9e24f5effa1a36a9f90cad16ea

SHA-256:
9b915929ff665789f2b144a30c64f1e1ecbfca39c081fd1aa9cbd5b76ab9716b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/12/2025 9:25:44 AM UTC  (today)

File size:
108.8 KB (111,416 bytes)

Product version:
1, 0, 0, 6

Copyright:
Copyright (C) 2014

Original file name:
extalks-Launcher.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\eztalks\eztalksclient\eztdesktop\launcherclient\eztalks-launcher.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/7/2014 1:00:00 AM

Valid to:
8/8/2015 12:59:59 AM

Subject:
CN=CUMeeting Inc, OU=CUMeeting Inc, O=CUMeeting Inc, L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4B039E566EBA7FFF5CC099FA8D2E2008

File PE Metadata
Compilation timestamp:
1/31/2015 8:42:59 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:oRvSKnPLTUygyiiW/yyoidORFUi3pqqIqHOTrrB:S/UysiJyoidORFUi3pqqIqoPB

Entry address:
0x9BCA

Entry point:
E8, 99, 04, 00, 00, E9, 37, FD, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 88, F6, 40, 00, 89, 0D, 84, F6, 40, 00, 89, 15, 80, F6, 40, 00, 89, 1D, 7C, F6, 40, 00, 89, 35, 78, F6, 40, 00, 89, 3D, 74, F6, 40, 00, 66, 8C, 15, A0, F6, 40, 00, 66, 8C, 0D, 94, F6, 40, 00, 66, 8C, 1D, 70, F6, 40, 00, 66, 8C, 05, 6C, F6, 40, 00, 66, 8C, 25, 68, F6, 40, 00, 66, 8C, 2D, 64, F6, 40, 00, 9C, 8F, 05, 98, F6, 40, 00, 8B, 45, 00, A3, 8C, F6, 40, 00, 8B, 45, 04, A3, 90, F6, 40, 00, 8D, 45, 08, A3, 9C, F6, 40...
 
[+]

Entropy:
6.2849

Code size:
40 KB (40,960 bytes)

The file eztalks-launcher.exe has been seen being distributed by the following 4 URLs.

Scan eztalks-launcher.exe - Powered by Reason Core Security