yaojing.exe

上海三七玩网络科技有限公司

Publisher:

Version:
1.0.0.0

MD5:
a3c7174f3c97d28ca650ec9a0dacbed7

SHA-1:
4113a112634eb9420576616bdf0a14fda5214db4

SHA-256:
d4b6fe142787497b26ff654abf4417be91ef4c61855306ee7ca9c84dda4d7a1a

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/28/2024 4:49:16 AM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
UnclassifiedMalware
17740

File size:
2.7 MB (2,827,160 bytes)

Product version:
1.0.0.1

File type:
Executable application (Win32 EXE)

Common path:
C:\ProgramData\37wan\yaojing\yaojing.exe

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
9/28/2012 4:09:53 AM

Valid to:
9/30/2013 5:38:42 PM

Subject:
E=wosign@37wan.com, CN=上海三七玩网络科技有限公司, O=上海三七玩网络科技有限公司, L=上海市, S=上海市, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
06692C6F28104A

File PE Metadata
Compilation timestamp:
7/29/2013 4:49:03 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:Uh8VdxG+S+F5bWpyOui1QGoK1MZapThccw1:Uh8Fi1U7IccQ

Entry address:
0x23B7F0

Entry point:
55, 8B, EC, 83, C4, F0, B8, 58, F4, 62, 00, E8, 6C, FF, DC, FF, A1, 18, DF, 64, 00, 8B, 00, E8, C4, 81, E9, FF, A1, 18, DF, 64, 00, 8B, 00, B2, 01, E8, F2, 9E, E9, FF, E8, 31, 27, FF, FF, 84, C0, 74, 07, E8, B8, 27, FF, FF, EB, 31, A1, CC, DD, 64, 00, 8B, 00, E8, EE, 57, FC, FF, 84, C0, 75, 21, E8, B1, 21, FF, FF, 84, C0, 74, 18, 8B, 0D, 14, D9, 64, 00, A1, 18, DF, 64, 00, 8B, 00, 8B, 15, D4, 8B, 62, 00, E8, 8D, 81, E9, FF, A1, 18, DF, 64, 00, 8B, 00, E8, D1, 82, E9, FF, E8, 44, B2, DC, FF, 00, 00, 00, 00...
 
[+]

Entropy:
6.5500

Developed / compiled with:
Microsoft Visual C++

Code size:
2.2 MB (2,333,696 bytes)

Scan yaojing.exe - Powered by Reason Core Security