webbeanfun_2_0_87_162_tw.exe

beanfun!

Gamania Digital Entertainment CO., LTD.

This is a setup program which is used to install the application. The file has been seen being downloaded from tw.patch.beanfun.com.
Publisher:
Gamania  (signed by Gamania Digital Entertainment CO., LTD.)

Product:
beanfun!

Version:
1.1.999.999

MD5:
baf6e89f034c8c18eec0c7b8ef8e25c6

SHA-1:
48681796364516fc4d4155282248836b7bfea0f7

SHA-256:
192e5772fec86c84c92df480676e0ed68b1955f6057b4a89934aef23c8c71285

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 7:39:15 PM UTC  (today)

File size:
2.4 MB (2,539,680 bytes)

Product version:
1.1.999.999

Copyright:
Copyright (C) Gamania

Original file name:
webbeanfun_full.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\webbeanfun_2_0_87_162_tw.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/31/2011 9:26:55 AM

Valid to:
3/31/2014 9:26:51 AM

Subject:
CN="Gamania Digital Entertainment CO., LTD.", OU="Gamania Digital Entertainment CO., LTD.", O="Gamania Digital Entertainment CO., LTD.", L=New Taipei City, S=Taiwan, C=TW

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012F09925E0D

File PE Metadata
Compilation timestamp:
6/17/2010 4:12:57 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:+PDaXAAwBUYrhNeowYzvtoHF54iEb4WqhWekQUCf+X5O2pweYlxrUn2:kDaXAAwBU02ohB+F54JIFa0+jOW2

Entry address:
0x2466E

Entry point:
E8, FF, 72, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 10, 53, 56, FF, 75, 10, 8D, 4D, F0, E8, 70, FB, FF, FF, 8B, 5D, 08, 33, F6, 3B, DE, 75, 2F, E8, AB, 0C, 00, 00, 56, 56, 56, 56, 56, C7, 00, 16, 00, 00, 00, E8, 33, 0C, 00, 00, 83, C4, 14, 80, 7D, FC, 00, 74, 07, 8B, 45, F8, 83, 60, 70, FD, B8, FF, FF, FF, 7F, E9, C0, 00, 00, 00, 57, 8B, 7D, 0C, 3B, FE, 75, 2F, E8, 74, 0C, 00, 00, 56, 56, 56, 56, 56, C7, 00, 16, 00, 00, 00, E8, FC, 0B, 00, 00, 83, C4, 14, 80, 7D, FC, 00, 74, 07, 8B, 45, F8...
 
[+]

Entropy:
7.8623  (probably packed)

Code size:
199.5 KB (204,288 bytes)

The file webbeanfun_2_0_87_162_tw.exe has been seen being distributed by the following URL.

Scan webbeanfun_2_0_87_162_tw.exe - Powered by Reason Core Security