rainbowmystery.exe

Denda Publishers B.V.

Publisher:
Denda Publishers B.V.  (signed and verified)

MD5:
ed3b524f093d9f3b558b4c6ac1e318bc

SHA-1:
c0414dc8018629a49e0062a86d731c0096b89a64

SHA-256:
9d7391079106db505e5447c04e1c582ffd899625a93671ff1c9a7b4a566b1a03

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 2:46:14 AM UTC  (today)

File size:
4.6 MB (4,806,896 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\denda games\rainbow mystery\rainbowmystery.exe

Digital Signature
Authority:
TC TrustCenter GmbH

Valid from:
12/9/2010 4:12:43 PM

Valid to:
12/9/2013 4:12:43 PM

Subject:
CN=Denda Publishers B.V., OU=TC Publisher ID for Authenticode, OU=IT- Services, O=Denda Publishers B.V., L=Oldenzaal, C=NL

Issuer:
CN=TC TrustCenter Class 2 L1 CA XII, OU=TC TrustCenter Class 2 L1 CA, O=TC TrustCenter GmbH, C=DE

Serial number:
589F00010002A63D8137A64492AC

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:mp6YWZAdphQYPYFEKDR0QbjqhGT7sCp+ecfOg:TWdfQ6q/DR0QbjqhG30R7

Entry address:
0x25C8

Entry point:
60, 9C, E9, CD, FF, FF, FF, C3, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 02, 00, 6E, AA, 05, 80, 28, 00, 00, 80, 03, 00, 00, 00, A4, 43, 00, 80, 0E, 00, 00, 00, 7C, A9, 05, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 01, 00, 00, 00, 40, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Scan rainbowmystery.exe - Powered by Reason Core Security