fantamorphsetup.tmp

Abrosoft Co.

Publisher:
Abrosoft Co.  (signed and verified)

Description:
Setup/Uninstall

Version:
51.52.0.0

MD5:
85c11975468746538e9ba7f520c6a9ae

SHA-1:
e913a37b454a3659238293432f92db8c57b3c3b0

SHA-256:
8e638f0845fa7bf3439f9ef4c93328b8b8c407d64d7d9af4977c4bd2941df495

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 7:52:32 PM UTC  (today)

File size:
715.7 KB (732,888 bytes)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\fantamorphsetup.tmp

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
10/19/2012 1:00:00 AM

Valid to:
10/20/2015 12:59:59 AM

Subject:
CN=Abrosoft Co., O=Abrosoft Co., STREET="No.72 SuZhouJie, Tower 1/Suite 403", STREET=HaiDian, L=Beijing, S=Beijing, PostalCode=100080, C=CN

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F83BED0B68409E87801ABC417499F04D

File PE Metadata
Compilation timestamp:
6/19/1992 11:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:qQtLeYXPEv4arPEn37TzH7A6p3xxu9yz/eERMY1VLJrNufs9RZM2wHOQyD362kWY:VtCUA4arPEn37TzH7A6nw9yzeESUFgHZ

Entry address:
0x96EA4

Entry point:
55, 8B, EC, 83, C4, F4, 53, 56, 57, E8, 92, C4, F6, FF, E8, E9, E7, F6, FF, E8, 78, F4, F6, FF, E8, 6B, 2A, F7, FF, E8, 9A, 2C, F7, FF, E8, 71, 9A, F7, FF, E8, E4, 9A, F7, FF, E8, 3B, BA, F7, FF, E8, 4E, 21, F8, FF, E8, 49, E0, F8, FF, E8, 7C, 84, F9, FF, E8, 63, 97, F9, FF, E8, 8E, 7E, FB, FF, E8, 6D, 82, FB, FF, E8, 60, 9C, FB, FF, E8, 53, B6, FB, FF, E8, F6, EF, FB, FF, E8, F9, FE, FB, FF, E8, 60, 17, FC, FF, E8, 87, CA, FC, FF, E8, 8E, 4B, FD, FF, E8, 25, 04, FE, FF, E8, 9C, AF, FE, FF, E8, 23, CF, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
600.5 KB (614,912 bytes)

Scan fantamorphsetup.tmp - Powered by Reason Core Security