runer.exe

Cong Ty Dau Tu Va Phat Trien Cong Nghe Thong Tin

Publisher:

MD5:
71d1ed94e383e8fce8be83ed2b8f1f8e

SHA-1:
d580c49911326f562be5482d5fa8c8e30a2f63bb

SHA-256:
0502732fc1befeaec7d18bb93927bb610cedf473c602f38332138c8a1024ca74

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/20/2024 3:11:08 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Packed/PECompact
7.1.1

File size:
101.3 KB (103,776 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\vtcgame\dot kich\runer.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/25/2011 7:00:00 AM

Valid to:
7/26/2013 6:59:59 AM

Subject:
CN=Cong Ty Dau Tu Va Phat Trien Cong Nghe Thong Tin, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Cong Ty Dau Tu Va Phat Trien Cong Nghe Thong Tin, L=Hanoi, S=Hanoi, C=VN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1163AFD815645B4622FAC27B357AE85B

File PE Metadata
Compilation timestamp:
4/12/2013 4:50:32 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:joxbw/4Nxy3+PwRrYwllyxcRtaer7jG8qpK:jD/4Nxc/ldRt1nj5R

Entry address:
0x103FA

Entry point:
B8, D0, A6, 43, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, B7, 1E, 85, 5D, AA, 04, 8A, 60, FD, 68, 13, DC, B3, 19, 29, E1, 44, EF, 81, 89, A6, 30, 45, E3, 34, BD, B1, 3D, 4B, 6F, BF, 50, CA, B0, 83, 78, 52, B6, 26, 16, 94, C0, 5D, 5F, C8, E2, 43, FC, 13, E3, 03, 09, 9B, 8D, 4C, C6, CC, 10, 5F, B9, E8, E0, 27, C5, 00, 5A, B6, CC, CD, 0C, 6E, 04, 40, 99, 39, EA, E8, 5E, DF, 5F, 55, 2D, 45, 3B, B7, DC, 4E, BC, 7C, 67, 4B, 86, 2A...
 
[+]

Packer / compiler:
PECompact v2

Code size:
132 KB (135,168 bytes)

Scan runer.exe - Powered by Reason Core Security