CometBird.exe

CometBird

Comet Network Technology Co Ltd.

Publisher:
CometNetwork  (signed by Comet Network Technology Co Ltd.)

Product:
CometBird

Version:
1.9.0.7

MD5:
f618b5b553ffe61c02db8c604b66c911

SHA-1:
2095edbb1149a4aed053b3882ac967592301b13d

SHA-256:
1d7c9b4c5265da81866763711b6ba0cbb938e42dcdcdbe9263fa000852eed863

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:04:36 PM UTC  (today)

File size:
125.3 KB (128,320 bytes)

Product version:
3.0.7

Original file name:
CometBird.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\cometbird\cometbird.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/23/2007 5:00:00 PM

Valid to:
11/12/2009 3:59:59 PM

Subject:
CN=Comet Network Technology Co Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Comet Network Technology Co Ltd., S=Shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
75B6D39BBAC2EB6F381D43F87A708FF0

File PE Metadata
Compilation timestamp:
3/6/2009 2:05:02 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:z4EOy+jffx35GgJH3DMPapTlEOy+jffx35GgJNJbQh:ix3vHTMPapJx3vNE

Entry address:
0x1790

Entry point:
E8, 9B, 03, 00, 00, E9, 26, FD, FF, FF, FF, 25, 54, 20, 40, 00, FF, 25, 5C, 20, 40, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 3B, 0D, 00, 30, 40, 00, 75, 02, F3, C3, E9, 21, 04, 00, 00, 8B, 44, 24, 04, 8B, 00, 81, 38, 63, 73, 6D, E0, 75, 2A, 83, 78, 10, 03, 75, 24, 8B, 40, 14, 3D, 20, 05, 93, 19, 74, 15, 3D, 21, 05, 93, 19, 74, 0E, 3D, 22, 05, 93, 19, 74, 07, 3D, 00, 40, 99, 01, 75, 05, E8, F5, 04, 00, 00, 33, C0, C2, 04, 00, 68, BF, 17, 40, 00, FF, 15, 24, 20, 40, 00, 33, C0, C3, FF, 25, 64, 20, 40, 00...
 
[+]

Entropy:
5.1060

Code size:
4 KB (4,096 bytes)

Shell Open Command
Open type:
ftp

Command:
"C:\Program Files\cometbird\cometbird.exe" -requestpending -osint -url "%1"


Scan CometBird.exe - Powered by Reason Core Security