xlliveud.exe

Thunder

ShenZhen Thunder Networking Technologies Ltd.

Publisher:
ShenZhen Xunlei Networking Technologies,LTD  (signed by ShenZhen Thunder Networking Technologies Ltd.)

Product:
Thunder

Description:
XLLiveUD

Version:
2, 0, 0, 5

MD5:
6ec1907dd676c8e19bbd0f9ddecc029d

SHA-1:
1ec44ddaffae88c1b1a2de5d9bd4021313793f61

SHA-256:
3803b588fe40b72dc922b7aa83881d92b908f1fd87450bd1d0bb5750f1bf317a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/12/2025 10:24:35 PM UTC  (today)

File size:
1.6 MB (1,707,360 bytes)

Product version:
2, 0, 0, 5

Copyright:
Copyright (c) 2003-2017 Xunlei Networking Technologies,LTD

Trademarks:
Xunlei

Original file name:
XLLiveUD

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\thunder8_9.0.19.482\xlliveud.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/22/2017 8:00:00 AM

Valid to:
7/26/2018 7:59:59 AM

Subject:
CN=ShenZhen Thunder Networking Technologies Ltd., OU=Operate, O=ShenZhen Thunder Networking Technologies Ltd., L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7506B5D2917A135C04E229EE21449A8D

File PE Metadata
Compilation timestamp:
3/9/2017 3:00:17 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x110834

Entry point:
E8, 7F, 0A, 00, 00, E9, 37, FD, FF, FF, FF, 25, 48, D5, 51, 00, FF, 25, 54, D5, 51, 00, FF, 25, 58, D5, 51, 00, FF, 25, 60, D5, 51, 00, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, B0, 04, 58, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, B0, 04, 58, 00, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF...
 
[+]

Entropy:
6.7072

Code size:
1.1 MB (1,160,704 bytes)

Windows Firewall Allowed Program
Name:
xlliveud


Scan xlliveud.exe - Powered by Reason Core Security