play.exe

Noviy Disk, ZAO

Publisher:
Noviy Disk, ZAO  (signed and verified)

MD5:
4c3918ae570e34bed9fc822f2dd4e3b0

SHA-1:
e695b19798004944c6c1e054386381e2810f2754

SHA-256:
1602f96e9a06999ae396cb3beaeb1bf73785ec38e3b4577b13ad0d13f785f47d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 1:22:59 PM UTC  (today)

File size:
448 KB (458,728 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\наша маша и волшебный орех\trl\play.exe

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
11/27/2008 3:00:00 AM

Valid to:
11/28/2010 2:59:59 AM

Subject:
CN="Noviy Disk, ZAO", OU=Secure Application Development, O="Noviy Disk, ZAO", L=Moscow, S=Russia, C=RU

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
323448EB896E89F20C2550EA93E8BB0B

File PE Metadata
Compilation timestamp:
9/29/2009 9:36:34 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:w/OfedxUCX7VEiKelbJBoKwCptbGvDauRK:aHLUmEiKelbRpnslRK

Entry address:
0x5F76C

Entry point:
55, 8B, EC, 83, C4, E8, 33, C0, 89, 45, EC, 89, 45, E8, B8, 9C, E4, 45, 00, E8, 70, 73, FA, FF, 33, C0, 55, 68, FB, F7, 45, 00, 64, FF, 30, 64, 89, 20, 8D, 55, E8, B8, 01, 00, 00, 00, E8, BD, 3A, FA, FF, 8B, 45, E8, 8D, 55, EC, E8, DA, 8F, FA, FF, 83, 7D, EC, 00, 74, 30, A1, 24, 1B, 46, 00, 8B, 00, E8, 54, A0, FF, FF, 8B, 0D, 20, 1C, 46, 00, A1, 24, 1B, 46, 00, 8B, 00, 8B, 15, 3C, C6, 45, 00, E8, 54, A0, FF, FF, A1, 24, 1B, 46, 00, 8B, 00, E8, C8, A0, FF, FF, 33, C0, 5A, 59, 59, 64, 89, 10, 68, 02, F8, 45...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
376.5 KB (385,536 bytes)

Scan play.exe - Powered by Reason Core Security