49you屠龙传说极速登陆器.exe

屠龙传说

Viduan Network Technology Co., LTD

Publisher:
微端网络  (signed by Viduan Network Technology Co., LTD)

Product:
屠龙传说

Version:
1, 0, 1, 8

MD5:
090ff2b25b4fc3760c1570098a205e77

SHA-1:
e5b1685781a23604fb1c1bcbe9d47f248103f332

SHA-256:
202f7f7eadf2cef85da941b44665038d87b52a40204ae3241603a093111a7b11

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/7/2024 3:08:02 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Trojan.DownLoader10.48561
9.0.1.05190

File size:
133.6 KB (136,840 bytes)

Product version:
1, 0, 1, 8

Copyright:
版权所有 (C) 2012

Original file name:
Login.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, PRC)

Common path:
C:\users\{user}\downloads\49you屠龙传说极速登陆器.exe

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
7/3/2012 5:43:25 PM

Valid to:
7/5/2013 9:59:39 PM

Subject:
E=admin@viduan.com, CN="Viduan Network Technology Co., LTD", O="Viduan Network Technology Co., LTD", L=Zhenjiang, S=Jiangsu, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
217DAE65B76259

File PE Metadata
Compilation timestamp:
11/23/2012 1:29:08 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:ahlK91uXpo5fQ63TFxaKhqRXOQH72YpWoJJJh:wCmpYooT2KhgOQHtJrh

Entry address:
0x4E3C

Entry point:
55, 8B, EC, 6A, FF, 68, 90, 6E, 40, 00, 68, C2, 4F, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, 94, 63, 40, 00, 59, 83, 0D, F4, BC, 40, 00, FF, 83, 0D, F8, BC, 40, 00, FF, FF, 15, 68, 63, 40, 00, 8B, 0D, E8, BC, 40, 00, 89, 08, FF, 15, 6C, 63, 40, 00, 8B, 0D, E4, BC, 40, 00, 89, 08, A1, 70, 63, 40, 00, 8B, 00, A3, F0, BC, 40, 00, E8, 16, 01, 00, 00, 39, 1D, F0, 93, 40, 00, 75, 0C, 68, BE, 4F, 40, 00, FF, 15, 74, 63...
 
[+]

Entropy:
7.5148

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
17.5 KB (17,920 bytes)

Scan 49you屠龙传说极速登陆器.exe - Powered by Reason Core Security