PPStream.exe

SHANGHAI ZHONGYUAN NETWORKS LIMITED

Publisher:
PPStream Inc.  (signed by SHANGHAI ZHONGYUAN NETWORKS LIMITED)

Description:
PPS网络电视

Version:
2, 6, 86, 9049

MD5:
1008eb821be5e8c14613a9c8a400fe36

SHA-1:
bd8dc52bc43c6a2afa0a1c509eb129113934502d

SHA-256:
2121d543d47a7d3569a6f080dc364b9a7f9fffb80772dad48e41b615b4918266

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/28/2024 7:30:34 PM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
Win.Trojan.Jiripbot-2
0.98/23140

File size:
3 MB (3,165,624 bytes)

Product version:
2, 6, 86, 9049

Copyright:
PPS.tv

Original file name:
PPStream.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/3/2009 8:00:00 AM

Valid to:
7/4/2011 7:59:59 AM

Subject:
CN=SHANGHAI ZHONGYUAN NETWORKS LIMITED, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SHANGHAI ZHONGYUAN NETWORKS LIMITED, L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3FBAA110B35D9865833D2D3F386B8F44

File PE Metadata
Compilation timestamp:
7/5/2010 10:10:00 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0xA98AC

Entry point:
55, 8B, EC, 6A, FF, 68, 60, 57, 56, 00, 68, 68, 7F, 4A, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 14, 74, 55, 00, 33, D2, 8A, D4, 89, 15, 68, 2F, 5B, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 64, 2F, 5B, 00, C1, E1, 08, 03, CA, 89, 0D, 60, 2F, 5B, 00, C1, E8, 10, A3, 5C, 2F, 5B, 00, 6A, 01, E8, 2D, 69, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, A0, 2B, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Entropy:
6.4204

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
1.3 MB (1,399,808 bytes)

Scan PPStream.exe - Powered by Reason Core Security