gfp.exe

4399快捷方式

四三九九网络股份有限公司

Publisher:
四三九九网络股份有限公司  (signed and verified)

Product:
4399快捷方式

Version:
1.0.0.0

MD5:
9c67b59aaae38418ec6008a0375256ff

SHA-1:
194313e1840d2d59a522f6c19946b92562cadf52

SHA-256:
ddcf45d4a747d92bd733944cc224c98cc2acb8cd878a66727a2d2ea36218eb43

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 9:30:13 PM UTC  (today)

File size:
851.3 KB (871,720 bytes)

Product version:
1.0.0.0

Copyright:
四三九九网络股份有限公司 保留所有权利。

Original file name:
4399Link.exe

File type:
Executable application (Win64 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\ProgramData\4399\gfp.exe

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
5/16/2013 1:16:03 PM

Valid to:
5/18/2014 10:02:35 AM

Subject:
E=box@4399.com, CN=四三九九网络股份有限公司, O=四三九九网络股份有限公司, L=厦门市, S=福建省, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
1EABBA60DFE2CA

File PE Metadata
Compilation timestamp:
6/21/2013 11:23:47 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:LYp3CTG1OtvryiFrdSjH43i3BjIyANbVe6Gb3zWLQcusM1UYDKApd8c4Q/I9d:Li3CTqSxd63lIR9VqzP7zCYR4bd

Entry address:
0x30C54

Entry point:
48, 83, EC, 28, E8, 53, 4B, 00, 00, 48, 83, C4, 28, E9, 16, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 3B, 0D, 19, 31, 03, 00, 75, 11, 48, C1, C1, 10, 66, F7, C1, FF, FF, 75, 02, F3, C3, 48, C1, C9, 10, E9, C5, 4B, 00, 00, CC, 48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8D, 05, 47, F0, 01, 00, 8B, DA, 48, 8B, F9, 48, 89, 01, E8, F2, 4C, 00, 00, F6, C3, 01, 74, 08, 48, 8B, CF, E8, A1, 85, FD, FF, 48, 8B, C7, 48, 8B, 5C, 24, 30, 48...
 
[+]

Entropy:
7.1336

Code size:
284 KB (290,816 bytes)

Scan gfp.exe - Powered by Reason Core Security