HunanTv.exe

芒果TV 应用程序

Hunantv.com Interactive Enterainment Media Co.Ltd

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘HunanTV’.
Publisher:

Product:
芒果TV 应用程序

Version:
4, 0, 0, 53

MD5:
cba5310eb311f5af03e3d9e1c59c21e4

SHA-1:
44d9472d34bc7ff4e0f62ad3f8401595e7654b87

SHA-256:
fd6d725c57d6aaac6073157150b5bbffdb5d4226cffd93e8d039dc1d75024d02

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 2:05:46 PM UTC  (today)

File size:
791 KB (810,024 bytes)

Product version:
4, 0, 0, 53

Copyright:
Copyright (C) 2014

Original file name:
HunanTv.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\hunantv\hunantv.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/29/2014 8:00:00 AM

Valid to:
10/30/2015 7:59:59 AM

Subject:
CN=Hunantv.com Interactive Enterainment Media Co.Ltd, O=Hunantv.com Interactive Enterainment Media Co.Ltd, L=Changsha, S=Hunan, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
54B08A8714B17F5EADCA69A5A4FCFA78

File PE Metadata
Compilation timestamp:
11/25/2014 6:35:26 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:a13U2wYZKsMPn6vaamtCVxH4Spsj16aj9eR3RG55s1YkAHPoSZ8mU:a1ENoPMCaR6h+6aJh5nhZ8F

Entry address:
0x6AD49

Entry point:
E8, 16, D2, 00, 00, E9, 17, FE, FF, FF, 6A, 10, 68, C0, 1C, 4A, 00, E8, AD, E8, FF, FF, 33, C0, 33, DB, 39, 5D, 08, 0F, 95, C0, 3B, C3, 75, 20, E8, 09, DC, FF, FF, C7, 00, 16, 00, 00, 00, 53, 53, 53, 53, 53, E8, 7D, C1, FF, FF, 83, C4, 14, 83, C8, FF, E9, F7, 00, 00, 00, 33, C0, 8B, 75, 0C, 3B, F3, 0F, 95, C0, 3B, C3, 74, D2, F6, 46, 0C, 40, 0F, 85, 8E, 00, 00, 00, 56, E8, 69, 67, 00, 00, 59, 83, F8, FF, 74, 2E, 56, E8, 5D, 67, 00, 00, 59, 83, F8, FE, 74, 22, 56, E8, 51, 67, 00, 00, C1, F8, 05, 8D, 3C, 85...
 
[+]

Entropy:
6.4477

Code size:
535.5 KB (548,352 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
HunanTV

Command:
"C:\Program Files\hunantv\hunantv.exe" -autorun


Scan HunanTv.exe - Powered by Reason Core Security