playparkconnectthinstaller.exe

Overwolf Installer

Overwolf Ltd

Publisher:
Overwolf  (signed by Overwolf Ltd)

Product:
Overwolf Installer

Version:
1.32.5043.30355

MD5:
304c7b51d7a618d6c32e7994c90b37fd

SHA-1:
cb324abe90717c95c45f9ae64495ded46dd7e72a

SHA-256:
6b4a73e700e224fd1b1df4313f732f91754057bb34ac4ac538fee2b1ecd81a80

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 1:18:19 PM UTC  (today)

File size:
1.4 MB (1,443,256 bytes)

Product version:
1.32.5043.30355

Copyright:
Copyright © Overwolf 2011

Original file name:
OWInstaller.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\programs\playparkconnectthinstaller.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
12/26/2011 7:00:00 AM

Valid to:
2/11/2014 6:59:59 AM

Subject:
CN=Overwolf Ltd, O=Overwolf Ltd, STREET=Halechi 27 st., L=Bnei Berak, S=Tel Aviv, PostalCode=51200, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
02E4635116A814330262E360005D60EB

File PE Metadata
Compilation timestamp:
10/22/2013 9:59:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:C+dcC1QHs0a2As0QXA2As0QXhFq1cjRC3I+4KqAiBgVLndJryNjn7UfvF52ni:CIX2Av52Av8tUI+4ACgVLndJeNjLi

Entry address:
0x15C0FA

Entry point:
FF, 25, 08, C1, 55, 00, 00, 00, 00, 00, 00, 00, 00, 00, DC, C0, 15, 00, 00, 00, 00, 00, 00, 00, 00, 00, E2, 92, 66, 52, 00, 00, 00, 00, 02, 00, 00, 00, 94, 00, 00, 00, 2C, C1, 15, 00, 2C, A3, 15, 00, 52, 53, 44, 53, B8, 26, 9E, 21, 94, 11, 47, 4C, 8C, 6A, 94, 22, 5E, 69, 3C, 07, 01, 00, 00, 00, 44, 3A, 5C, 53, 65, 72, 67, 61, 79, 5C, 4F, 76, 65, 72, 77, 6F, 6C, 66, 53, 6F, 75, 72, 63, 65, 5C, 4F, 76, 65, 72, 77, 6F, 6C, 66, 5C, 49, 6E, 73, 74, 61, 6C, 6C, 65, 72, 4E, 65, 78, 74, 56, 65, 72, 5C, 53, 6F, 75...
 
[+]

Entropy:
6.7418

Code size:
1.4 MB (1,417,728 bytes)

Scan playparkconnectthinstaller.exe - Powered by Reason Core Security