pprotector.exe

PProtector

Beijing Perfect World Network Technology Co.,Ltd.

Publisher:
Perfect World Co.,Ltd.  (signed by Beijing Perfect World Network Technology Co.,Ltd.)

Product:
PProtector

Description:
Perfect World Game Protector

Version:
1.0.0.0

MD5:
3ad921b4f9bb6155582b43a1f1ee29be

SHA-1:
1b4a3bcaecf8ef595dc9056bb0b192d983dc1b40

SHA-256:
a9b72e5b75fb5ce3624c28423ca9f2a4ba5c4ddd14a6f7d2680fbf217bba1040

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 12:50:41 AM UTC  (today)

File size:
3.1 MB (3,296,456 bytes)

Product version:
1.0.0.0

Copyright:
Copyright (c) Perfect World Co.,Ltd. All rights reserved.

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/8/2016 8:00:00 AM

Valid to:
7/8/2019 7:59:59 AM

Subject:
CN="Beijing Perfect World Network Technology Co.,Ltd.", OU=Technology Department, O="Beijing Perfect World Network Technology Co.,Ltd.", L=Binjing, S=Binjing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
26276EE2DD9A566DEE2C52B26B9BADBE

File PE Metadata
Compilation timestamp:
8/12/2016 2:20:48 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:lTAlRF6+N7dwfjuvBInMMz8xxQFhkao7VTtpsPBbJBfEFhZ75RLY6VEV9Bk:pARF6+N7dGjznMi80wfsPBbPETZt6bDk

Entry address:
0x329DAE

Entry point:
E9, F6, 7F, FF, FF, FF, 40, 99, A2, F8, 82, DB, DE, B3, E8, 5B, C6, 75, 96, 06, 86, 62, E6, 39, 74, 32, 14, 4B, 34, 50, 9A, 5F, 3C, 64, E4, 3D, D4, 0A, 14, 4D, 37, 6E, D2, 0B, C1, 1A, 1F, E4, 3D, 38, 2E, F6, D2, 6C, 50, 84, 59, A8, 71, 74, 6D, 96, E1, 15, 39, AC, 75, 70, F3, EF, 44, 9C, E1, D9, 07, E3, 54, EF, 36, 57, 45, E6, 3B, CA, 13, D0, 0A, CE, 0B, 48, 0E, 63, 3B, DC, 02, 76, 2F, 42, 1A, 1F, 5B, 80, 85, 2A, 6F, 1E, A9, 88, EB, 9A, 9A, C2, C7, 50, A6, 54, 48, C0, 55, 8C, 89, F7, CF, B4, F1, FC, E0, B1...
 
[+]

Entropy:
7.8387

Packer / compiler:
tElock 0.99 - 1.0 private

Code size:
293.5 KB (300,544 bytes)

Scan pprotector.exe - Powered by Reason Core Security