hkship.exe

Entrust.net

It runs as a scheduled task under the Windows Task Scheduler.
Publisher:
Entrust.net  (signed and verified)

MD5:
5403d78d5c18831e6e557f40d8f07670

SHA-1:
2ede1d32bf0c359e72d3f7da6835d8f2f90df95b

SHA-256:
2aee711e0c1fb36583ba9559105ce81926944eb431991c2501ab1a05183e38ed

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:53:41 AM UTC  (today)

File size:
16.2 MB (16,949,204 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\square enix\sleeping dogs - limited edition\hkship.exe

Digital Signature
Signed by:

Authority:
Entrust.net

Valid from:
5/26/1999 2:09:40 AM

Valid to:
5/26/2019 2:39:40 AM

Subject:
CN=Entrust.net Secure Server Certification Authority, OU=(c) 1999 Entrust.net Limited, OU=www.entrust.net/CPS incorp. by ref. (limits liab.), O=Entrust.net, C=US

Issuer:
CN=Entrust.net Secure Server Certification Authority, OU=(c) 1999 Entrust.net Limited, OU=www.entrust.net/CPS incorp. by ref. (limits liab.), O=Entrust.net, C=US

Serial number:
374AD243

File PE Metadata
Compilation timestamp:
8/17/2012 10:18:18 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:fcgdCzfRMAy7hMKoX+6ng6IElbwfYbBlMLFabRMZCLMb+dFQ5Vtk1:EVjOva0Dgbe6ayM6idG

Entry address:
0x10E5000

Entry point:
B9, F1, 9B, 27, 00, 90, BF, 1A, 50, 4E, 01, 90, BE, 98, 05, 00, 00, 90, 90, 31, 0C, 3E, 83, EE, 03, 4E, 90, 75, F6, 90, 19, E6, 26, 00, F1, 9B, 27, 00, F1, 9B, 67, 00, 91, F3, 36, 00, F1, 71, D8, 00, 25, 74, D8, 00, F1, 2B, 25, 00, F0, 9B, 27, 00, 99, 8B, 29, 01, 19, F8, 10, 01, 27, F8, 10, 01, 65, A9, D0, 00, 17, F8, D0, 00, 25, F8, D0, 00, 99, 63, EA, 00, 17, F8, D0, 00, 25, F8, D0, 00, F1, 9B, 27, 00, F1, 9B, 27, 00, F1, 9B, 27, 00, F5, 88, 29, 01, A5, 8A, 29, 01, F1, 9B, 27, 00, F1, 9B, 27, 00, F1, 9B...
 
[+]

Entropy:
6.4937

Code size:
12.9 MB (13,497,344 bytes)

Scheduled Task
Task name:
{0DBC80BC-B2FE-4130-AA2D-8E38F54CFB72}

Trigger:
Registration (Runs on registration)


Scan hkship.exe - Powered by Reason Core Security