nacl64.exe

KChrome

Beijing Arswp Information and Technology Co.,Ltd.

Publisher:
The KChrome Authors  (signed by Beijing Arswp Information and Technology Co.,Ltd.)

Product:
KChrome

Version:
16.0.910.20417

MD5:
189527f810e93a6ac62057c326894994

SHA-1:
fcf0f360761923f4f9dab06e8f640ac32a1144c1

SHA-256:
5274ab73b490dfdb49919468de27b1ed75cf2042acee6f99237633be6d55d836

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 12:15:10 PM UTC  (today)

File size:
1.1 MB (1,195,400 bytes)

Product version:
16.0.910.20417

Copyright:
Copyright (C) 2006-2011 The KChrome Authors. All Rights Reserved.

Original file name:
nacl64.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\roaming\kchrome\16.0.910.20417\nacl64.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/20/2011 8:00:00 AM

Valid to:
9/19/2012 7:59:59 AM

Subject:
CN="Beijing Arswp Information and Technology Co.,Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Beijing Arswp Information and Technology Co.,Ltd.", L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7C91C45F7B19D3FD3B4F1F9B4C8BDE29

File PE Metadata
Compilation timestamp:
4/17/2012 2:16:05 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:4o8esCSPwfM6xwh6DDHYK0oRjJIhzdOr0WEutnuNPtA6+:oesCQCM0woDsK/QhzdOr0WdtnSPd+

Entry address:
0x6AAF0

Entry point:
48, 83, EC, 28, E8, 63, B0, 00, 00, 48, 83, C4, 28, E9, 1A, FE, FF, FF, CC, CC, 40, 53, 48, 83, EC, 20, BA, 08, 00, 00, 00, 8D, 4A, 18, E8, 31, 61, 00, 00, 48, 8B, C8, 48, 8B, D8, E8, AA, 79, 00, 00, 48, 89, 05, 17, 5B, 0E, 00, 48, 89, 05, 08, 5B, 0E, 00, 48, 85, DB, 75, 05, 8D, 43, 18, EB, 06, 48, 83, 23, 00, 33, C0, 48, 83, C4, 20, 5B, C3, CC, CC, 48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 48, 89, 7C, 24, 18, 41, 54, 41, 55, 41, 56, 48, 83, EC, 20, 4C, 8B, F1, E8, D3, F6, FF, FF, 90, 48, 8B, 0D, CF, 5A, 0E...
 
[+]

Entropy:
6.3640

Code size:
794.5 KB (813,568 bytes)

Scan nacl64.exe - Powered by Reason Core Security