SothinkProcess.exe

{B166CCA7-3C5E-4e11-9D4F-582FB510777A}CompanyName#####################################################################################################

Zhang Qingming

Publisher:
Sothink Software.  (signed by Zhang Qingming)

Product:
{B166CCA7-3C5E-4e11-9D4F-582FB510777A}CompanyName#####################################################################################################

Description:
Sothink Media Toolkit

Version:
1, 0, 0, 1

MD5:
6a7e13b45ca59034030c11ce6b27f399

SHA-1:
87a9ef6137557a34d902ef61bec2e2982c825958

SHA-256:
3656caeed4c90b2f64e68ebc03133900d3b20c8845439e294822ff73670e44b0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 4:39:32 PM UTC  (today)

File size:
7.2 MB (7,502,904 bytes)

Product version:
1, 0, 0, 1

Copyright:
{B166CCA7-3C5E-4e11-9D4F-582FB510777A}CompanyName#####################################################################################################

Original file name:
SothinkProcess.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\sothink free movie dvd maker\sothinkprocess.exe

Digital Signature
Signed by:

Authority:
WoSign CA Limited

Valid from:
6/19/2015 12:49:57 AM

Valid to:
6/19/2016 12:49:57 AM

Subject:
CN=Zhang Qingming, L=Xin'an, S=Henan, C=CN

Issuer:
CN=WoSign Class 2 Code Signing CA, O=WoSign CA Limited, C=CN

Serial number:
41F4CEFBF7FCBD8739746DD2C696E362

File PE Metadata
Compilation timestamp:
11/18/2015 3:29:32 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
196608:qlM0UmuMUiGgSio7YIZhs0TNtS3lC+GrRRUK+sA5pcRwT1:H3MdqioEEGgyYtEKe5pSwT1

Entry address:
0x1000

Entry point:
68, 01, A0, 48, 01, E8, 01, 00, 00, 00, C3, C3, 5E, 15, CF, AC, 8E, A4, D8, BC, DA, 48, 7D, 9B, 04, 5D, 33, C9, BE, 37, 52, C4, 48, 03, 2F, 11, 33, 44, 8F, 02, E7, E6, D2, 42, D2, F5, 32, 9F, 3E, 46, 85, 79, 46, 43, 29, 73, 69, 2F, 92, C4, D8, 30, 37, 3F, 00, 8D, B0, AA, 3E, 23, B5, DF, 1B, C7, 5D, F1, F1, DE, E6, 36, 58, 28, 5F, 5E, 73, B9, 8B, 19, 62, BF, E5, FE, 87, A9, CA, E2, 91, E7, B3, 61, 02, D7, AC, BB, D8, CF, 86, 63, 72, 95, D5, E5, 8D, F5, 3B, 59, 5F, B5, B7, 41, 85, 1A, 34, 4E, 45, 88, ED, 58...
 
[+]

Entropy:
7.8039

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
7 MB (7,295,488 bytes)

Scan SothinkProcess.exe - Powered by Reason Core Security