mmobombinstaller.exe

Overwolf Installer

Overwolf Ltd

This is a setup and installation application.
Publisher:
Overwolf  (signed by Overwolf Ltd)

Product:
Overwolf Installer

Version:
1.30.4693.31566

MD5:
a5ea7c018fc433bd0f29ce7c8823b53f

SHA-1:
ea4815f50bc3dce42a2ef7bed1f6822ec251a64d

SHA-256:
588d885d6baf4163300ee31559009a9f1d5c568b0095e2fd3a96c00846d01697

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 8:20:08 PM UTC  (today)

File size:
1002.9 KB (1,027,000 bytes)

Product version:
1.30.4693.31566

Copyright:
Copyright © Overwolf 2011

Original file name:
OWInstaller.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\mmobombinstaller.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
12/26/2011 2:00:00 AM

Valid to:
2/11/2014 1:59:59 AM

Subject:
CN=Overwolf Ltd, O=Overwolf Ltd, STREET=Halechi 27 st., L=Bnei Berak, S=Tel Aviv, PostalCode=51200, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
02E4635116A814330262E360005D60EB

File PE Metadata
Compilation timestamp:
11/6/2012 7:36:48 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:emoWS36txQVmnOIcgXdj/pmWZhswzLvd+Y0wrjU/urmhxw8/kWQVyf:4WSbVmPd/pxhswzLvd+Y0wrg/dtkbVyf

Entry address:
0xEC246

Entry point:
FF, 25, 54, C2, 4E, 00, 00, 00, 00, 00, 00, 00, 00, 00, 28, C2, 0E, 00, 00, 00, 00, 00, 00, 00, 00, 00, B0, 4A, 99, 50, 00, 00, 00, 00, 02, 00, 00, 00, 85, 00, 00, 00, 78, C2, 0E, 00, 78, A4, 0E, 00, 52, 53, 44, 53, 32, 3C, 73, 0E, 2B, 30, 80, 47, AA, 32, 6E, 72, 0E, 9E, BE, EC, 01, 00, 00, 00, 43, 3A, 5C, 4F, 76, 65, 72, 77, 6F, 6C, 66, 5C, 53, 6F, 75, 72, 63, 65, 5C, 4F, 76, 65, 72, 77, 6F, 6C, 66, 5C, 49, 6E, 73, 74, 61, 6C, 6C, 65, 72, 4E, 65, 78, 74, 56, 65, 72, 5C, 53, 6F, 75, 72, 63, 65, 5C, 4F, 57...
 
[+]

Code size:
937 KB (959,488 bytes)

Scan mmobombinstaller.exe - Powered by Reason Core Security