client.exe

client

WISE GAME INFORMATION TECHNOLOGY (SHANGHAI) CO., LTD.

Product:
client

Version:
1.4.0.63716

MD5:
d1a4f756d089c839bb284015454acbc4

SHA-1:
b8886ae640b0b4c6172ac36f3b32898e7914121f

SHA-256:
3d0cb13715698d2ed6800f8b69fc1e7850bf308a10e081e792c19083a53e8d56

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/8/2024 12:50:31 PM UTC  (today)

File size:
2.6 MB (2,729,152 bytes)

Product version:
1.4.0.63716

Copyright:
Copyright (C) 2013 WISE GAME INFORMATION TECHNOLOGY (SHANGHAI) CO., LTD.

Original file name:
client.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\avatar star\client.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/21/2016 7:00:00 AM

Valid to:
4/22/2019 6:59:59 AM

Subject:
CN="WISE GAME INFORMATION TECHNOLOGY (SHANGHAI) CO., LTD.", OU=Business Dept, O="WISE GAME INFORMATION TECHNOLOGY (SHANGHAI) CO., LTD.", L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
27F973C330544D722C7C599A58AF4AFC

File PE Metadata
Compilation timestamp:
10/17/2016 10:52:42 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:IkGkoNTiU1BFrisrAI8zUTOr2WSLGo1srM+cyLucSZ4WvBd:IkToRiUXFrmI22fdF+PW

Entry address:
0xF89A37

Entry point:
E8, 2A, 81, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 68, 39, 3A, 01, 89, 0D, 64, 39, 3A, 01, 89, 15, 60, 39, 3A, 01, 89, 1D, 5C, 39, 3A, 01, 89, 35, 58, 39, 3A, 01, 89, 3D, 54, 39, 3A, 01, 66, 8C, 15, 80, 39, 3A, 01, 66, 8C, 0D, 74, 39, 3A, 01, 66, 8C, 1D, 50, 39, 3A, 01, 66, 8C, 05, 4C, 39, 3A, 01, 66, 8C, 25, 48, 39, 3A, 01, 66, 8C, 2D, 44, 39, 3A, 01, 9C, 8F, 05, 78, 39, 3A, 01, 8B, 45, 00, A3, 6C, 39, 3A, 01, 8B, 45, 04, A3, 70, 39, 3A, 01, 8D, 45, 08, A3, 7C, 39, 3A...
 
[+]

Entropy:
7.8912  (probably packed)

Code size:
8.9 MB (9,319,424 bytes)

Scan client.exe - Powered by Reason Core Security