playerupdate.exe

Guangxi Nanning Shengtaian E-commerce Development Co., Ltd.

Publisher:
音乐FM  (signed by Guangxi Nanning Shengtaian E-commerce Development Co., Ltd.)

Product:
音乐FM

Description:
音乐FM升级程序

Version:
1.0.0.0

MD5:
5f2677a5afb0e475fe2586761c142150

SHA-1:
1bf9ca08c51739f83613d6b5966877f49e3f8b83

SHA-256:
fbdce6119505964177a83525bc6179e595ddaa6062934ecf8fe89eaee491cdee

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 6:45:38 PM UTC  (today)

File size:
139.8 KB (143,160 bytes)

Product version:
1.0.0.0

Copyright:
Copyright (C) 2012

Original file name:
PlayerUpdate.rc

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\musicplayer\2013814\playerupdate.exe

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
6/2/2013 10:58:04 PM

Valid to:
7/6/2014 9:14:35 AM

Subject:
E=kefu@shengtaian.com, CN="Guangxi Nanning Shengtaian E-commerce Development Co., Ltd.", O="Guangxi Nanning Shengtaian E-commerce Development Co., Ltd.", L=Nanning, S=Guangxi Zhuangzu Zizhiqu, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
039E5E3EE7A9AB

File PE Metadata
Compilation timestamp:
6/27/2013 5:49:07 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
3072:+fALammDgyd5xTQWYsYXXsBVRSnUkQURrbUSDI29:WRl5NQYYHsBWvQacx29

Entry address:
0xA818

Entry point:
E8, 76, 48, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 88, D1, 41, 00, 89, 0D, 84, D1, 41, 00, 89, 15, 80, D1, 41, 00, 89, 1D, 7C, D1, 41, 00, 89, 35, 78, D1, 41, 00, 89, 3D, 74, D1, 41, 00, 66, 8C, 15, A0, D1, 41, 00, 66, 8C, 0D, 94, D1, 41, 00, 66, 8C, 1D, 70, D1, 41, 00, 66, 8C, 05, 6C, D1, 41, 00, 66, 8C, 25, 68, D1, 41, 00, 66, 8C, 2D, 64, D1, 41, 00, 9C, 8F, 05, 98, D1, 41, 00, 8B, 45, 00, A3, 8C, D1, 41, 00, 8B, 45, 04, A3, 90, D1, 41, 00, 8D, 45, 08, A3, 9C, D1, 41...
 
[+]

Entropy:
6.3550

Code size:
78 KB (79,872 bytes)

Scan playerupdate.exe - Powered by Reason Core Security