Crossfire.exe

CF Launcher

Cong ty dau tu va phat trien cong nghe thong tin

Publisher:
VTC Intecom  (signed by Cong ty dau tu va phat trien cong nghe thong tin)

Product:
CF Launcher

Version:
1.0.0.7

MD5:
8c374fbc35e47fd522553a4717b90482

SHA-1:
fc714e631d3e96daca337e2143572cbe611d7907

SHA-256:
eaf1d7b2fd4a8556d73f73ed4ff588b24be834bb7601661da3a501f6d6857db0

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
1/21/2018 9:48:54 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Packed/PECompact
7.1.1

Antiy Labs AVL
Virus/Win32.Slugin
2.0.3.7

File size:
1.2 MB (1,303,904 bytes)

Product version:
1.0.0.7

Copyright:
This software is released under the terms of the Intecom Company General Public License.

Original file name:
Crossfire.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\vtcgame\dot kich\crossfire.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/25/2013 7:00:00 AM

Valid to:
8/26/2015 6:59:59 AM

Subject:
CN=Cong ty dau tu va phat trien cong nghe thong tin, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Cong ty dau tu va phat trien cong nghe thong tin, L=HaNoi, S=HaNoi, C=VN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
575323975412F8B7B19EC54EBE4BAAF3

File PE Metadata
Compilation timestamp:
12/11/2013 9:24:30 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:4Cmmj/ZLJBRR5Iou1f7GP0YmhmmzqNUZlPsT+IaUVNQADvKWe5ttt6qWA4:cq/jBRR5du1f70pubqKTsSFUV6ATF4tW

Entry address:
0x335A0

Entry point:
B8, 64, 34, 5A, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 1C, 1C, 14, EF, 76, 57, 3C, 74, 4C, FF, A4, 13, 78, CA, 42, 17, 95, B1, 18, 6E, 8D, B9, 4A, 84, 78, 6D, B7, 85, E4, 69, DC, E5, 48, 7B, E4, 94, B5, 71, 1A, 82, DC, CE, 4E, 8F, CA, 1F, BF, 25, A4, 0A, A5, 53, 59, 05, 88, AC, 13, 1E, 91, 55, 77, CC, 63, 63, 24, B5, 1A, 72, F2, A2, D4, C9, CB, E1, 87, 89, F2, DE, 31, D1, 42, 64, 2B, B8, DE, 38, 1D, 9C, 4C, 38, 93, 18, 46...
 
[+]

Packer / compiler:
PECompact v2

Code size:
304 KB (311,296 bytes)

Scan Crossfire.exe - Powered by Reason Core Security