vmmr0.r0

北京丰余科技有限公司

Publisher:
北京丰余科技有限公司  (signed and verified)

MD5:
bf8e5054a39178c3b21700863df866d5

SHA-1:
2c79893bea6db0933c06ed3ea5859601c5473ad1

SHA-256:
7cc42406ad9930a69dfe1cd74ed9ebc15132344c4f99e37ff836cdbc1b152396

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/6/2024 5:39:04 AM UTC  (today)

File size:
1 MB (1,079,744 bytes)

Common path:
C:\users\{user}\appdata\roaming\funspeed\Program Files\yiwanplayer\vbox\vmmr0.r0

Digital Signature
Authority:
WoSign CA Limited

Valid from:
4/14/2016 3:51:31 PM

Valid to:
4/14/2017 3:51:31 PM

Subject:
CN=北京丰余科技有限公司, O=北京丰余科技有限公司, L=北京市, S=北京市, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign CA Limited, C=CN

Serial number:
626F093A7B9390119026AB12B473BDEA

File PE Metadata
Compilation timestamp:
5/13/2016 11:32:56 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
10.0

CTPH (ssdeep):
12288:8h4WpU7mO83s/bizuobD+n677nKf/pvKuCNCNyeXCuZBiWu:8h4oU7KNuobZiRv/Caz3Zi

Entry address:
0xC3770

Entry point:
66, 90, CC, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 49, 89, FA, 49, 89, F3, 48, 89, CF, 48, 89, D6, 4C, 89, C1, 4C, 89, C2, 48, 89, F8, 48, 39, F7, 73, 16, FC, F3, A4, EB, 00, 4C, 89, D7, 4C, 89, DE, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 8D, 7C, 0F, FF, 48, 8D, 74, 0E, FF, FD, F3, A4, FC, EB, DF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FC, 49, 89, F9, 48, 89, CF, 48, C7, C1, FF, FF, FF, FF, 31, C0, F2, AE, 48, F7, D9, 48, 8D, 41, FE, 4C, 89, CF, C3, CC, CC, CC...
 
[+]

Entropy:
6.4595

Code size:
805 KB (824,320 bytes)

Scan vmmr0.r0 - Powered by Reason Core Security