playerupdate.exe

GuangxiNanningshi Shengjuguangzaixian Info Tech Co.,LTD.

Publisher:
无极影音  (signed by GuangxiNanningshi Shengjuguangzaixian Info Tech Co.,LTD.)

Product:
无极影音

Description:
无极影音升级程序

Version:
1.0.0.0

MD5:
bb45a620f2d0de9e7a776c82f77a9b64

SHA-1:
364a88e2b6ebbec38d3d9012101d5b239bfa0848

SHA-256:
94ba09632a185ecde013818f1e5245714177aa2f01db7fa2f62718c66d6a9cbf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 11:55:18 PM UTC  (a few moments ago)

File size:
144.6 KB (148,112 bytes)

Product version:
1.0.0.0

Copyright:
Copyright (C) 2012

Original file name:
PlayerUpdate.rc

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\Program Files\wjplay3\2014042817\playerupdate.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
4/14/2014 8:00:00 AM

Valid to:
4/15/2015 7:59:59 AM

Subject:
CN="GuangxiNanningshi Shengjuguangzaixian Info Tech Co.,LTD.", O="GuangxiNanningshi Shengjuguangzaixian Info Tech Co.,LTD.", L=Nanning, S=Guangxi, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2BAC93FD3FE5B005036AD0D4C873C6E5

File PE Metadata
Compilation timestamp:
3/1/2014 10:58:05 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
3072:4SJbyvDBsCkKTMt3vGecAFkIdnrThUQFasQQHNM7RZPObTU:4qK4t34AFPaQFnQQutAbTU

Entry address:
0xA808

Entry point:
E8, B8, 48, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 88, D1, 41, 00, 89, 0D, 84, D1, 41, 00, 89, 15, 80, D1, 41, 00, 89, 1D, 7C, D1, 41, 00, 89, 35, 78, D1, 41, 00, 89, 3D, 74, D1, 41, 00, 66, 8C, 15, A0, D1, 41, 00, 66, 8C, 0D, 94, D1, 41, 00, 66, 8C, 1D, 70, D1, 41, 00, 66, 8C, 05, 6C, D1, 41, 00, 66, 8C, 25, 68, D1, 41, 00, 66, 8C, 2D, 64, D1, 41, 00, 9C, 8F, 05, 98, D1, 41, 00, 8B, 45, 00, A3, 8C, D1, 41, 00, 8B, 45, 04, A3, 90, D1, 41, 00, 8D, 45, 08, A3, 9C, D1, 41...
 
[+]

Entropy:
6.3191

Code size:
78 KB (79,872 bytes)

Scan playerupdate.exe - Powered by Reason Core Security