ogpupdate.exe

OGPlanet

Publisher:
OGPlanet  (signed and verified)

MD5:
066869f7601f927dbdf43fa69fb32c9c

SHA-1:
bc0033aa05658e5ba825bfed6923d6b2eac08565

SHA-256:
bb6eb7a784a18eee149681e58489bb39167695e7cf5a4587ed2f652ff3e182a3

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/25/2024 12:27:22 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
BACKDOOR.Trojan
9.0.1.013

File size:
1.2 MB (1,304,472 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ogplanet\eulauncher\ogpupdate.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/2/2009 10:00:00 PM

Valid to:
11/3/2010 9:59:59 PM

Subject:
CN=OGPlanet, OU=OGPlanet, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=OGPlanet, L=El Segundo, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
58F3ADEB40F886608DFB810D31588B29

File PE Metadata
Compilation timestamp:
11/6/2009 7:40:22 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:9MDi17NGr91DSFTExXiDQcZFykAb3qCW3q1cQ+0:9jqEAkALwRQ+0

Entry address:
0xADE28

Entry point:
55, 8B, EC, 83, C4, F0, B8, 68, C0, 4A, 00, E8, EC, 91, F5, FF, 68, 9C, DE, 4A, 00, 6A, FF, 6A, 00, E8, BA, 93, F5, FF, E8, 8D, 94, F5, FF, 3D, B7, 00, 00, 00, 75, 05, E8, 29, 6D, F5, FF, A1, 64, 14, 4B, 00, 8B, 00, E8, 51, 1C, FB, FF, A1, 64, 14, 4B, 00, 8B, 00, 33, D2, E8, 1B, 3B, FB, FF, 8B, 0D, 9C, 12, 4B, 00, A1, 64, 14, 4B, 00, 8B, 00, 8B, 15, 5C, 95, 4A, 00, E8, 43, 1C, FB, FF, A1, 64, 14, 4B, 00, 8B, 00, E8, 6F, 1D, FB, FF, E8, E6, 6C, F5, FF, 00, 00, 4F, 47, 50, 6C, 61, 6E, 65, 74, 20, 55, 70, 64...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
689.5 KB (706,048 bytes)

Scan ogpupdate.exe - Powered by Reason Core Security