playgame.exe.bak

Jiangxi province network game Ltd.

Publisher:
Jiangxi province network game Ltd.  (signed and verified)

MD5:
1eb74f3d7866184045a02ba0bf9f1ec7

SHA-1:
510c4bcb7582670bb6cfd99533396618a3c1d15c

SHA-256:
6b3e5654adac275613d693f6cb535ce3bae6062e1f48cffde42f0b20be22fa08

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/19/2024 11:38:56 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

IKARUS anti.virus
Trojan.Win32.ChePro
t3scan.2.0.127

File size:
2 MB (2,069,152 bytes)

Digital Signature
Authority:
Thawte, Inc.

Valid from:
3/9/2012 4:00:00 PM

Valid to:
3/10/2013 4:59:59 PM

Subject:
CN=Jiangxi province network game Ltd., OU=Technology, O=Jiangxi province network game Ltd., L=nanchang, S=jiangxi, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
3B977AA859CD93C1B76C2B7358B063BD

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:Ic0QzyQp+TWyZl73CVfR1AF+GmEpvWpxze5wf33UI9KSRkeI/Sm0Gw2/3aETe8dD:IcJVwTZZl73KGmUqx/UI9m/5Xi8Z

Entry address:
0x6C988

Entry point:
55, 8B, EC, 83, C4, F0, B8, 28, C6, 46, 00, E8, 80, 9D, F9, FF, A1, E4, EA, 46, 00, 8B, 00, E8, 60, 45, FE, FF, A1, E4, EA, 46, 00, 8B, 00, C6, 40, 5B, 00, 8B, 0D, 28, EC, 46, 00, A1, E4, EA, 46, 00, 8B, 00, 8B, 15, 30, BB, 46, 00, E8, 55, 45, FE, FF, A1, E4, EA, 46, 00, 8B, 00, E8, C9, 45, FE, FF, E8, 4C, 79, F9, FF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6642

Developed / compiled with:
Microsoft Visual C++

Code size:
430.5 KB (440,832 bytes)

Scan playgame.exe.bak - Powered by Reason Core Security