haqilauncherkids.exe

ParaEngine Co

Publisher:
ParaEngine Co  (signed and verified)

MD5:
7220b8283e8367d41b04cfd3f0c14ad8

SHA-1:
abdf88b5e12840f900bdbd3535b49a5e40b69ddf

SHA-256:
9865a1f86c04ff6d1617a6e8ae9213163c1e08a060d2da09f78e1cb8dfe65f49

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 2:23:26 AM UTC  (today)

File size:
648.7 KB (664,248 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\taomee\haqi\update\web\0.6.139\haqilauncherkids.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/10/2012 8:00:00 AM

Valid to:
5/11/2013 7:59:59 AM

Subject:
CN=ParaEngine Co, OU=Dev, O=ParaEngine Co, STREET=Po Box 3321, STREET="Drake Chambers, Road Town", L=Tortola, S=Tortola, PostalCode=Tortola, C=VG

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
09E48F27AD89551F1C2640B2511E7D29

File PE Metadata
Compilation timestamp:
3/27/2013 3:07:10 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:sBfXfGR1K4yJ0iUDApmgZGqrx2giSN7G4QmjZSJy5eTioeoWn8Y:sxvGR1K4yJ7mghrx2efjZSyeTZ9Y

Entry address:
0x20B8A

Entry point:
E8, 5E, 9E, 00, 00, E9, 89, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 53, 57, 33, FF, 8B, 44, 24, 10, 0B, C0, 7D, 14, 47, 8B, 54, 24, 0C, F7, D8, F7, DA, 83, D8, 00, 89, 44, 24, 10, 89, 54, 24, 0C, 8B, 44, 24, 18, 0B, C0, 7D, 13, 8B, 54, 24, 14, F7, D8, F7, DA, 83, D8, 00, 89, 44, 24, 18, 89, 54, 24, 14, 0B, C0, 75, 1B, 8B, 4C, 24, 14, 8B, 44, 24, 10, 33, D2, F7, F1, 8B, 44, 24, 0C, F7, F1, 8B, C2, 33, D2, 4F, 79, 4E, EB, 53, 8B, D8, 8B, 4C, 24, 14, 8B, 54, 24, 10, 8B, 44, 24, 0C, D1, EB...
 
[+]

Entropy:
7.4804

Code size:
218.5 KB (223,744 bytes)

Scan haqilauncherkids.exe - Powered by Reason Core Security