mini_installer.exe

Adventurer

france telecom

This is a setup and installation application.
Publisher:
Orange  (signed by france telecom)

Product:
Adventurer

Version:
1.0.0.1

MD5:
e69c17b9c6fa5ad7f18066ce1b691e0a

SHA-1:
7abe5f61ba38577b9fcf281672919f21217fd4d2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 11:39:05 AM UTC  (today)

File size:
24 MB (25,157,000 bytes)

Product version:
1.0.0.1

Copyright:
Copyright (C) 2012 Orange. All Rights Reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\Local settings\temp\mini_installer.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/2/2011 2:00:00 AM

Valid to:
8/2/2012 1:59:59 AM

Subject:
CN=france telecom, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Orange, O=france telecom, L=Paris, S=Paris, C=FR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
762A6776D68ABB9EEE95324AC2C6FCBF

File PE Metadata
Compilation timestamp:
6/5/2012 10:31:35 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
393216:sFE5/mnvR6YIZoUevKF5ByROvRQ+OhICvVqdPzsu2GXffQusF1CY45JIc72e8I63:V5+QYcveu8Ou+OCBsunXguMsfwciW65J

Entry address:
0x2F40

Entry point:
6A, 00, FF, 15, 9C, 10, 40, 00, 50, E8, 82, FE, FF, FF, 83, C4, 04, 50, FF, 15, 98, 10, 40, 00, CC, CC, CC, CC, CC, CC, CC, CC, 56, 8B, 74, 24, 0C, 8D, 04, 36, 39, 44, 24, 14, 77, 04, 32, C0, 5E, C3, 8B, 54, 24, 10, 33, C9, 33, C0, 66, 89, 0C, B2, 85, F6, 76, 3D, 53, 57, 8B, 7C, 24, 10, EB, 06, 8D, 9B, 00, 00, 00, 00, 8A, 0C, 38, 0F, B6, D9, 0F, BE, C9, C1, EB, 04, 66, 8B, 1C, 5D, 98, 15, 40, 00, 83, E1, 0F, 66, 89, 1C, 82, 66, 8B, 0C, 4D, 98, 15, 40, 00, 66, 89, 4C, 82, 02, 40, 3B, C6, 72, D3, 5F, 5B, B0...
 
[+]

Packer / compiler:
FASM v1.3x

Code size:
10 KB (10,240 bytes)

Scan mini_installer.exe - Powered by Reason Core Security