LanClient.exe

Nanjing Wangya Computer Co.,Ltd.

Publisher:
监控客户端  (signed by Nanjing Wangya Computer Co.,Ltd.)

Product:
监控客户端

Version:
9.09.0095

MD5:
fff3970abbd48ecd920604dd6801a46d

SHA-1:
45eb1def3ec88f1bd86c53f742951056bc87a725

SHA-256:
f1118d581b4b9b8fbf93bd794e833bb1de69df917ab1a2dec7b986adb07eac29

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 12:34:35 AM UTC  (today)

File size:
737.1 KB (754,800 bytes)

Product version:
9.09.0095

Copyright:
监控客户端.

Trademarks:
监控客户端

Original file name:
LanClient.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ecjhdvh\lanclient.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
11/25/2011 8:00:00 AM

Valid to:
1/10/2014 7:59:59 AM

Subject:
CN="Nanjing Wangya Computer Co.,Ltd.", OU=Wangya, O="Nanjing Wangya Computer Co.,Ltd.", L=NanJing, S=JiangSu, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
5E0F4C01CC3CCA4FE7949C8A6F7136F6

File PE Metadata
Compilation timestamp:
9/11/2012 3:53:38 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:ehSae8ll0yvRozfU6CkV6bizO5f5E5TlYPKr4ZqWQWX7pUDI1SzDTI8wOcbblSIN:bE0yv6zfRCkLW9X7pUDI1SzDTI8wLSIN

Entry address:
0x84A8

Entry point:
68, F0, B5, 40, 00, E8, EE, FF, FF, FF, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, C4, B2, B2, 33, D6, 47, 3F, 44, BF, 94, BA, 14, BD, F6, CA, 61, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 64, 72, 61, 77, 20, 20, 77, 6F, 72, 6B, 77, 69, 6E, 63, 00, 31, 20, 20, 27, 54, 72, 75, 00, 0D, 0A, 20, 20, 20, 43, 6C, C0, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 07, 00, 00, 00, F8, 0C, EB, E7, 06, 95, 66, 44, 8B, 49, 31, E7, D1, 9C, 54, 0E, 01, 00, 00, 00, A0, 00, 00, 00...
 
[+]

Entropy:
5.9272

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
712 KB (729,088 bytes)

Scan LanClient.exe - Powered by Reason Core Security