jpartm.exe

駅すぱあと

Val Laboratory Corporation

Publisher:
株式会社ヴァル研究所  (signed by Val Laboratory Corporation)

Product:
駅すぱあと

Description:
航空時刻表

Version:
3, 3, 4, 17393

MD5:
11f94bdad9f9147d887043f1afa55f20

SHA-1:
8f7203b833ef60f7a0c25940bacf0af17774db1b

SHA-256:
a1455e1c4072194ed7a64ef3163bbff59a88ca2eb28304aa8e719370bc01d0ee

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/28/2024 10:31:00 AM UTC  (today)

File size:
670 KB (686,072 bytes)

Product version:
3, 3, 16, 401

Copyright:
(C)Val Laboratory Corporation

Original file name:
ExpAdia.EXE

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\expwin32\jpartm.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
6/15/2015 9:00:00 AM

Valid to:
7/13/2016 8:59:59 AM

Subject:
CN=Val Laboratory Corporation, OU=Management & Coordination, O=Val Laboratory Corporation, L=Suginami-ku, S=Tokyo, C=JP

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
0DF2291C7BAD4AA722C1A5CB40A73384

File PE Metadata
Compilation timestamp:
3/14/2016 2:10:31 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:wEc0ZQJPZQ3ZTd76TSgLQZkOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOd:hgZQJT9qNL+kOOOOOOOOOOOOOOOOOOOE

Entry address:
0x2BBEA

Entry point:
E8, DE, AB, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 83, EC, 14, 53, FF, 75, 10, 8D, 4D, EC, E8, 79, F8, FF, FF, 33, DB, 39, 5D, 08, 75, 2E, E8, 58, 0A, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, DE, 37, 00, 00, 83, C4, 14, 38, 5D, F8, 74, 07, 8B, 45, F4, 83, 60, 70, FD, B8, FF, FF, FF, 7F, E9, BE, 00, 00, 00, 56, 8B, 75, 0C, 3B, F3, 75, 2E, E8, 22, 0A, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, A8, 37, 00, 00, 83, C4, 14, 38, 5D, F8, 74, 07, 8B, 45, F4, 83, 60, 70, FD, B8, FF, FF...
 
[+]

Entropy:
5.8096

Code size:
264 KB (270,336 bytes)

Scan jpartm.exe - Powered by Reason Core Security