YDOnceClick_DLDL.exe

斗罗大陆

Fengling Network Co., Ltd.

Publisher:
Fengling Network Co., Ltd.  (signed and verified)

Product:
斗罗大陆

Version:
1.0.0.0

MD5:
8736ba12c9243007e179d05148a92697

SHA-1:
e70d43d944e73c61cc3402f6e2da1ff980990595

SHA-256:
d914f4da48cf49cd9ff5e22c4f3102c32326c88f668e41543b19605e1fcda224

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/29/2024 2:20:30 AM UTC  (today)

File size:
32.2 KB (32,952 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2015

Original file name:
YDOnceClick_DLDL.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\apps\2.0\hl6gzy04.qkq\468411br.79m\ydon..tion_bc0652508ea099f3_0001.0000_0e1c4bcbb6fe5db7\ydonceclick_dldl.exe

Digital Signature
Authority:
WoSign CA Limited

Valid from:
10/8/2015 8:08:45 PM

Valid to:
10/8/2016 8:08:45 PM

Subject:
CN="Fengling Network Co., Ltd.", O="Fengling Network Co., Ltd.", L=Ili Kazak Autonomous Prefecture, S=Xinjiang Uygur Autonomous Region, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign CA Limited, C=CN

Serial number:
692C51CDFD465FFDEC8B49A631F79866

File PE Metadata
Compilation timestamp:
3/9/2016 11:12:51 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:oYsEFIkRLg30mplRX+CBCbJOgLPYi4j0DSjWFWCLZ9RohH:oYsHziC4wjQSjWFFl9QH

Entry address:
0x7E5E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.7193

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
24 KB (24,576 bytes)

Scan YDOnceClick_DLDL.exe - Powered by Reason Core Security