runer.exe

Cong ty dau tu va phat trien cong nghe thong tin

Publisher:

MD5:
2abf6539e30350aa41c59de4417a31ff

SHA-1:
121d77d7d92e065badfb950b3c9900ac89f795b9

SHA-256:
dd69a5dfbff99d5a844d26948853ab896066e411a8042b13a1f1e1a6ff5e6e62

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/27/2024 1:40:52 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Packed/PECompact
7.1.1

Bkav FE
HW32.CDB
1.3.0.4959

File size:
157.3 KB (161,096 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\vtcgame\dot kich\runer.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/30/2013 7:00:00 AM

Valid to:
8/26/2015 6:59:59 AM

Subject:
CN=Cong ty dau tu va phat trien cong nghe thong tin, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Cong ty dau tu va phat trien cong nghe thong tin, L=Hanoi, S=Hanoi, C=VN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2F318FA88A92CCE830CC187023EC0B36

File PE Metadata
Compilation timestamp:
7/11/2014 10:55:48 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:wpFy6fAfbhN8CDTYiSrIbmti3+6vwYPIOumMHK2bxBWk2wAtB94wO6jg:wzyMA1WCDTOI6ti3NvwAATm9a/

Entry address:
0x1EB91

Entry point:
B8, 68, C7, 45, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 83, C3, 68, 84, AB, 8F, 8C, 3C, 2A, 97, 58, 7A, D4, 97, 07, 65, E6, E4, 82, 43, E5, 5D, 05, 4E, 96, 0C, C2, 6A, 4D, 3D, E2, D0, 95, 50, A0, 11, 3A, 9D, 91, 6D, 63, CD, 6E, 74, D6, 9C, 61, E0, F8, 26, E5, 76, E5, E3, C7, 1E, 48, 7F, 38, AF, D1, E0, 72, 4B, 7E, EC, 78, 65, A1, 60, 91, B6, 63, 18, E4, E4, 7A, 54, 33, E8, D8, F2, AE, E7, 53, B1, 9D, 31, FF, 63, C5, 93, C8...
 
[+]

Packer / compiler:
PECompact v2

Code size:
224 KB (229,376 bytes)

Scan runer.exe - Powered by Reason Core Security