ppstreamsetup.exe

PPStream

SHANGHAI ZHONGYUAN NETWORKS LIMITED

This is a self-extracting archive and installer.
Publisher:
PPStream Inc.  (signed by SHANGHAI ZHONGYUAN NETWORKS LIMITED)

Product:
PPStream

Description:
PPStream Installer

Version:
2.7.0.1310

MD5:
69609eb7a3aa69ce3b3d6e58989ee7b0

SHA-1:
3f4e082eba334675ce441baa9e9c7bd599cee008

SHA-256:
0b43c842c09c9f8cd536935eb8795da52a5e7dd3047035e338c281a0cea09c18

Scanner detections:
4 / 68

Status:
Clean  (4 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/19/2024 12:47:32 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Trojan.MulDrop4.20351
9.0.1.031

ESET NOD32
Detection.Undefined
10.7.0.302.0

Trend Micro House Call
TROJ_GEN.F47V0719
7.2.31

Vba32 AntiVirus
Trojan.KillAV
3.12.24.3

File size:
12.5 MB (13,157,264 bytes)

Product version:
2.7.0.1310

Copyright:
Copyright (C) 2005-2011 PPStream Inc. All Rights Reserved.

Original file name:
ppstreamsetup.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\ppstreamsetup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/12/2011 8:00:00 AM

Valid to:
8/11/2012 7:59:59 AM

Subject:
CN=SHANGHAI ZHONGYUAN NETWORKS LIMITED, OU=Development department, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SHANGHAI ZHONGYUAN NETWORKS LIMITED, L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0F7FE25AE1191062E67174403487897F

File PE Metadata
Compilation timestamp:
9/13/2011 7:20:39 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
393216:7u4JguiStAqyOFWAmNRfJ0s0w9tlQaRLx:BJgomRAqRfJ0VwNZ1

Entry address:
0x3294D0

Entry point:
60, BE, 00, 30, 72, 00, 8D, BE, 00, E0, CD, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75...
 
[+]

Entropy:
7.9999

Packer / compiler:
UPX 2.90LZMA

Code size:
28 KB (28,672 bytes)

Scan ppstreamsetup.exe - Powered by Reason Core Security