playerupdate.exe

Guangxi Nanning Shengtaian E-commerce Development Co., Ltd.

Publisher:
无极影音  (signed by Guangxi Nanning Shengtaian E-commerce Development Co., Ltd.)

Product:
无极影音

Description:
无极影音升级程序

Version:
1.0.0.0

MD5:
402de2f93fd57c78490e98caeb805f7c

SHA-1:
f929910418d0c7dce288123c50c1c7f587a255d5

SHA-256:
f9f97c50148e732bdb5ce8cdeae615a714b80382b107190a75c1b55e18f1d4d7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 1:07:33 PM UTC  (today)

File size:
147.8 KB (151,352 bytes)

Product version:
1.0.0.0

Copyright:
Copyright (C) 2012

Original file name:
PlayerUpdate.rc

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\wuji\525846\playerupdate.exe

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
6/2/2013 10:58:04 PM

Valid to:
7/6/2014 9:14:35 AM

Subject:
E=kefu@shengtaian.com, CN="Guangxi Nanning Shengtaian E-commerce Development Co., Ltd.", O="Guangxi Nanning Shengtaian E-commerce Development Co., Ltd.", L=Nanning, S=Guangxi Zhuangzu Zizhiqu, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
039E5E3EE7A9AB

File PE Metadata
Compilation timestamp:
5/18/2013 10:56:28 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
3072:ImJb+vDBsCkKTMt3vGecAFkpdgrThUQFasQQHNM7RZPOb/E7:IiK4t34AFNaQFnQQutAb/A

Entry address:
0xA808

Entry point:
E8, B8, 48, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 88, D1, 41, 00, 89, 0D, 84, D1, 41, 00, 89, 15, 80, D1, 41, 00, 89, 1D, 7C, D1, 41, 00, 89, 35, 78, D1, 41, 00, 89, 3D, 74, D1, 41, 00, 66, 8C, 15, A0, D1, 41, 00, 66, 8C, 0D, 94, D1, 41, 00, 66, 8C, 1D, 70, D1, 41, 00, 66, 8C, 05, 6C, D1, 41, 00, 66, 8C, 25, 68, D1, 41, 00, 66, 8C, 2D, 64, D1, 41, 00, 9C, 8F, 05, 98, D1, 41, 00, 8B, 45, 00, A3, 8C, D1, 41, 00, 8B, 45, 04, A3, 90, D1, 41, 00, 8D, 45, 08, A3, 9C, D1, 41...
 
[+]

Entropy:
6.3662

Code size:
78 KB (79,872 bytes)

Scan playerupdate.exe - Powered by Reason Core Security