minecraftbox_1.2.9.exe

创世神启动器

Ben Xun Network Technology Co., Ltd.

Publisher:
Ben Xun Network Technology Co.  (signed by Ben Xun Network Technology Co., Ltd.)

Product:
创世神启动器

Version:
1.2.9.0

MD5:
3321f0f1e4ae5c5072ee3a22a331ae63

SHA-1:
b525221f8481ba46c3c402dab746a3f8d32e605c

SHA-256:
2a082c7740f757d144d313379774a5ca2781734f5b2ffafdde71eb04d85526a4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 12:34:00 PM UTC  (today)

File size:
4.3 MB (4,460,296 bytes)

Product version:
1.2.9.0

Copyright:
Copyright (C) 2016

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\minecraftbox_1.2.9.exe

Digital Signature
Authority:
WoSign CA Limited

Valid from:
5/10/2016 1:03:21 PM

Valid to:
6/10/2017 1:03:21 PM

Subject:
CN="Ben Xun Network Technology Co., Ltd.", E=wbb@gzbx.cc, O="Ben Xun Network Technology Co., Ltd.", L=Guangzhou, S=Guangdong, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA G2, O=WoSign CA Limited, C=CN

Serial number:
3F683602B8901F23013E11C006A432B6

File PE Metadata
Compilation timestamp:
8/10/2016 8:44:37 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
98304:HUvuZ4w94OkPHot/eCydm3IPhNBdQffneFyPrqdpNu:HBp94Gcm3I3HyfneQPrZ

Entry address:
0x13F504

Entry point:
E8, 42, 0D, 00, 00, E9, 80, FE, FF, FF, CC, CC, B9, 01, 00, 00, 00, F2, 0F, 10, 2D, D8, 5E, 5B, 00, EB, 1C, B9, 02, 00, 00, 00, F2, 0F, 10, 2D, E0, 5E, 5B, 00, EB, 0D, B9, 03, 00, 00, 00, F2, 0F, 10, 2D, D8, 5E, 5B, 00, 66, 0F, 7E, C0, 25, FF, FF, FF, 7F, 3D, 00, 00, 80, 7F, 0F, 83, 4C, 01, 00, 00, F3, 0F, 5A, C0, 83, F9, 02, 75, 18, F2, 0F, 10, 15, F8, 5E, 5B, 00, 66, 0F, 2F, C2, 76, 0A, BA, 10, 00, 00, 00, E8, 3D, 01, 00, 00, 66, 0F, 2F, C5, 0F, 83, 21, 01, 00, 00, F2, 0F, 10, 35, D0, 5E, 5B, 00, 66, 0F...
 
[+]

Entropy:
6.9990

Code size:
1.6 MB (1,702,912 bytes)

The file minecraftbox_1.2.9.exe has been seen being distributed by the following URL.

http://launcher.zuimc.com/d.php

Scan minecraftbox_1.2.9.exe - Powered by Reason Core Security