Patch.exe

OsMonitor Server patch

Nanjing Wangya Computer Co.,Ltd.

Publisher:
WangYa Computer Co.,Ltd.  (signed by Nanjing Wangya Computer Co.,Ltd.)

Product:
OsMonitor Server patch

Version:
1.00

MD5:
e89303857235784aefc40d061ae81a50

SHA-1:
089b002d956c80ba9110b02067de8fd12ead01cb

SHA-256:
dd6503172641dd3bbbb287e2e786df08880e752abe3c2a0c00d792d990ddeb53

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 12:36:56 AM UTC  (today)

File size:
77.5 KB (79,400 bytes)

Product version:
1.00

Original file name:
Patch.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\osmonitorserver\patch.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
11/25/2011 7:00:00 AM

Valid to:
1/10/2014 6:59:59 AM

Subject:
CN="Nanjing Wangya Computer Co.,Ltd.", OU=Wangya, O="Nanjing Wangya Computer Co.,Ltd.", L=NanJing, S=JiangSu, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
5E0F4C01CC3CCA4FE7949C8A6F7136F6

File PE Metadata
Compilation timestamp:
12/31/2013 2:19:26 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:0TROmE+kkKMlayWm6N9fPdEzihI3Pk8r6ZgPiAJYBcaqm:0FOmE+jl7dsfuaqm

Entry address:
0x1748

Entry point:
68, 70, 2E, 40, 00, E8, EE, FF, FF, FF, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, A9, 23, 8A, FD, CB, 2C, 89, 40, 83, 0D, 36, 2C, 5E, 77, 90, 03, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 53, 65, 72, 76, 65, 72, 70, 61, 74, 63, 68, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 02, 00, 00, 00, 06, 30, 15, 52, 0D, 42, 79, 48, 9B, 37, 8B, AC, 57, 47, 6A, B0, 01, 00, 00, 00, 98, 00, 00, 00...
 
[+]

Entropy:
5.4665

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
52 KB (53,248 bytes)

Scan Patch.exe - Powered by Reason Core Security