tgame.exe

桃园

Shanghai BingDong Information Technology Co., LTD

Publisher:
ICE Entertainment, Inc.  (signed by Shanghai BingDong Information Technology Co., LTD)

Product:
桃园

Description:
桃园客户端

Version:
0,4,0,971

MD5:
7ff7a485da8c0fae4553618434319cd3

SHA-1:
3a8edf4329c405351c4f0583a195778ca451e294

SHA-256:
585b94c0513e74d8253c62b478289f065e2d0e1074c8825d4548bf1fbaddf8db

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 4:21:21 AM UTC  (today)

File size:
10.7 MB (11,251,320 bytes)

Product version:
0,4,0,971

Copyright:
Copyright 2010 ICE Entertainment, Inc. All Rights Reserved.

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\playcool\ty\binaries\win32\tgame.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
5/31/2013 6:23:41 PM

Valid to:
5/31/2016 6:23:41 PM

Subject:
CN="Shanghai BingDong Information Technology Co., LTD", O="Shanghai BingDong Information Technology Co., LTD", L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121240F6A5926D7597C325146502C2DD373

File PE Metadata
Compilation timestamp:
7/11/2013 6:33:11 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:QCkxvcdaBzysCaxpT/8T+ks0qpoY8AfVs8cOQmisd7uKxhKxSdzki6O0RYNXv8po:QCkxnzK8Tzn0qhV1JQmzSO5BRT0U/8po

Entry address:
0x23A3D12

Entry point:
9C, E8, AE, 25, 00, 00, 81, 8B, 2B, BB, D0, E5, 84, 18, 34, CA, D9, F0, CE, A4, 13, 6F, 1B, A7, 53, 9A, 09, 14, A3, B7, 48, 66, F8, 96, 49, 8A, 97, 17, 45, 68, 68, 53, 94, EF, FF, 5C, CD, EE, 0E, E8, 57, 04, 59, CD, 92, 77, 99, B4, 49, 62, EF, 7A, 33, 65, 59, 1A, A7, 65, 61, 00, 00, 51, 75, 65, 72, 79, 50, 65, 72, 66, 6F, 72, 6D, 61, 6E, 63, 65, 46, 72, 65, 71, 75, 65, 6E, 63, 79, 00, 00, 00, 4C, 6F, 63, 6B, 52, 65, 73, 6F, 75, 72, 63, 65, 00, 00, 00, 44, 33, 44, 58, 43, 68, 65, 63, 6B, 56, 65, 72, 73, 69...
 
[+]

Entropy:
7.9776  (probably packed)

Code size:
13 MB (13,599,232 bytes)

Scan tgame.exe - Powered by Reason Core Security