MagicFlash.EXE

MagicFlash

Sanook Online Limited

Publisher:
Tencent  (signed by Sanook Online Limited)

Product:
MagicFlash

Description:
MagicFlash

Version:
1, 2, 0, 3

MD5:
ba4c8140b50f2df19430ebc67ae2440e

SHA-1:
9b5f1d2f7ff7abe004f39d00542907f7b4eaa41f

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
8/17/2025 1:28:08 PM UTC  (today)

Scan engine
Detection
Engine version

SUPERAntiSpyware
Adware.Tencent
9790

File size:
112.1 KB (114,744 bytes)

Product version:
1, 2, 0, 3

Copyright:
CopyRight Tencent(C) 2005

Original file name:
MagicFlash.EXE

File type:
Executable application (Win32 EXE)

Language:
Chinese (PRC)

Common path:
C:\Program Files\sanook\qq\bin\magicflash.exe

Digital Signature
Authority:
WoSign, Inc.

Valid from:
4/21/2011 7:00:00 AM

Valid to:
4/21/2012 6:59:59 AM

Subject:
CN=Sanook Online Limited, OU=Class 3 - for Microsoft Authenticode Signing, O=Sanook Online Limited, L=Laksi, S=Bangkok, C=TH

Issuer:
CN=WoSign Code Signing Authority, O="WoSign, Inc.", C=US

Serial number:
6068A7F0E3A3D29E2B6E2ADD83D1928C

File PE Metadata
Compilation timestamp:
5/16/2005 3:50:49 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:GQgFZGh7VoR/kab8nGZNIOrnToIff/tTxLpLqXhdJpgfoRy:GQgFZGhxKAGZHLTBff/xxSlgfoRy

Entry address:
0x6B2C

Entry point:
55, 8B, EC, 6A, FF, 68, 88, B3, 40, 00, 68, C4, 6C, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, 84, 82, 40, 00, 59, 83, 0D, 3C, D7, 40, 00, FF, 83, 0D, 40, D7, 40, 00, FF, FF, 15, 88, 82, 40, 00, 8B, 0D, 18, D7, 40, 00, 89, 08, FF, 15, 8C, 82, 40, 00, 8B, 0D, 14, D7, 40, 00, 89, 08, A1, 90, 82, 40, 00, 8B, 00, A3, 38, D7, 40, 00, E8, 28, 01, 00, 00, 39, 1D, 60, D5, 40, 00, 75, 0C, 68, C0, 6C, 40, 00, FF, 15, 94, 82...
 
[+]

Entropy:
5.0349

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
28 KB (28,672 bytes)

Scan MagicFlash.EXE - Powered by Reason Core Security