GameClient.exe

浩方电竞平台

Holdfast Online Information Technology Co. Ltd.

Publisher:
上海浩方在线信息技术有限公司  (signed by Holdfast Online Information Technology Co. Ltd.)

Product:
浩方电竞平台

Version:
5.2.0.0

MD5:
a1b8d4795339537d36f5834daad93396

SHA-1:
4a6e40234dbb4ec854c255fef44b3cd611fbe88e

SHA-256:
6869aefa80bbfbb7936d623c37dcd90d67eed8f9dec53d1e193bf914153181b4

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/23/2024 6:09:02 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
W32/Sality.AC
7.11.30.172

Sophos
Sus/Behav-1009
4.42

File size:
1.8 MB (1,889,760 bytes)

Product version:
5.2.0.0

Copyright:
版权所有(C) 2002-2009

Original file name:
GameClient.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\holdfast\platform 5.0\gameclient.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/17/2008 9:00:00 AM

Valid to:
7/27/2009 8:59:59 AM

Subject:
CN=Holdfast Online Information Technology Co. Ltd., OU=Secu Dept., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Holdfast Online Information Technology Co. Ltd., L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1690C85D1B33919E5F8FCC64058CF760

File PE Metadata
Compilation timestamp:
3/10/2009 9:47:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:SeRxEWKSDO6F3X7fUp/mv75pixCC2T2ahpD:SoSSXLfU5KkZ4D

Entry address:
0x137938

Entry point:
55, 8B, EC, 6A, FF, 68, 50, 21, 58, 00, 68, 28, 7B, 53, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, D0, B4, 56, 00, 59, 83, 0D, BC, 63, 5C, 00, FF, 83, 0D, C0, 63, 5C, 00, FF, FF, 15, CC, B4, 56, 00, 8B, 0D, B0, 63, 5C, 00, 89, 08, FF, 15, C8, B4, 56, 00, 8B, 0D, AC, 63, 5C, 00, 89, 08, A1, C4, B4, 56, 00, 8B, 00, A3, B8, 63, 5C, 00, E8, C6, 01, 00, 00, 39, 1D, D0, C2, 5B, 00, 75, 0C, 68, 6A, 7B, 53, 00, FF, 15, C0, B4...
 
[+]

Entropy:
6.3428

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
1.4 MB (1,478,656 bytes)

Internet Explorer Extension
Name:
{0A155D3C-68E2-4215-A47A-E800A446447A}


Scan GameClient.exe - Powered by Reason Core Security