PandashanLauncher.exe

Pandashan Launcher

OLAVI INDUSTRY HK LIMITED

Publisher:
OLAVI INDUSTRY HK LIMITED

Product:
Pandashan Launcher

Version:
1.0.0.1

MD5:
3c288a1f98e827d4c89648fc0d89daa6

SHA-1:
9c60badd956028e1f805c0f54958d6c06ef4043d

SHA-256:
c6b60d905d79c89ad138d999927978cea2eb711056e86ed8708d7d3c611dccb4

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/23/2024 7:10:06 PM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
Suspicious_GEN.F47V0702
7.2.199

File size:
5.2 MB (5,454,336 bytes)

Product version:
1.0.0.1

Copyright:
Copyright © 2012

Original file name:
PandashanLauncher.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
7/1/2014 3:25:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
98304:WqzVDeYi8EwwObrqzVDdqzv/kuPG/SEQV+PZYazpfiazpfpOb:W0ti7wwObr0dKO6EJzLzvOb

Entry address:
0x51F55E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.5740

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
5.1 MB (5,363,200 bytes)

The file PandashanLauncher.exe has been discovered within the following program.

World of Warcraft  by Blizzard Entertainment
World of Warcraft is the fourth released game set in the fantasy Warcraft universe.
us.blizzard.com/support
8% remove it
 
Powered by Should I Remove It?

The file PandashanLauncher.exe has been seen being distributed by the following URL.

Scan PandashanLauncher.exe - Powered by Reason Core Security