StarEShow.exe

星空E秀网视

Zhenjiang Nuoya Network Technology Co.,Ltd.

Publisher:
Zhenjiang Nuoya Network Technology Co.,Ltd  (signed by Zhenjiang Nuoya Network Technology Co.,Ltd.)

Product:
星空E秀网视

Version:
1.00.0008

MD5:
a73c7aa8666aec0b7656ffded660ea77

SHA-1:
6f89b1af452a76c9bf652254575bdaaf05ae8a7d

SHA-256:
f84737624f35e95f3c5f9434310eea9512376b4ad24d94624083a2431301fdc7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/14/2024 9:08:57 PM UTC  (today)

File size:
871.8 KB (892,736 bytes)

Product version:
1.00.0008

Original file name:
StarEShow.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\Program Files\stareshow\stareshow.exe

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
3/25/2013 1:08:43 PM

Valid to:
3/27/2014 1:40:09 AM

Subject:
E=vip_ppk@qq.com, CN="Zhenjiang Nuoya Network Technology Co.,Ltd.", O="Zhenjiang Nuoya Network Technology Co.,Ltd.", L=Zhenjiang, S=Jiangsu, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
1FBD4C9607EA8E

File PE Metadata
Compilation timestamp:
3/29/2013 12:39:30 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:lX3zLW7OU8e9lhjahgrpC3ZS2+eZC3kV2zB1z2CCxkvV9Kx:p3ziqUlieeZjVkB1rV9Y

Entry address:
0x43D8

Entry point:
68, 70, 48, 40, 00, E8, F0, FF, FF, FF, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 02, A2, 90, 8F, 3A, F8, CF, 4A, 87, C1, 42, 8B, 3E, E1, BC, E4, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 0A, 20, 20, 20, 20, 20, 53, 74, 61, 72, 74, 45, 53, 68, 6F, 77, 00, 20, 20, 20, 20, 20, 00, 3D, 20, 20, 20, 39, 32, 36, C0, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 16, 00, 00, 00, 5F, A8, FF, 5B, 25, 33, 7E, 47, BE, C1, F5, 23, A6, 58, 43, 89, 01, 00, 00, 00, A0, 00, 00, 00...
 
[+]

Entropy:
6.5341

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
816 KB (835,584 bytes)

Scan StarEShow.exe - Powered by Reason Core Security