SothinkProcess.exe

{B166CCA7-3C5E-4e11-9D4F-582FB510777A}CompanyName#####################################################################################################

Zhang Qingming

Publisher:
Sothink Software.  (signed by Zhang Qingming)

Product:
{B166CCA7-3C5E-4e11-9D4F-582FB510777A}CompanyName#####################################################################################################

Description:
Sothink Media Toolkit

Version:
1, 0, 0, 1

MD5:
0c166a386717b495aeb793c30288cc4a

SHA-1:
278dce5b2ea6d90a9b85828a076e90b683061016

SHA-256:
fbab3ce559e7e17c911f83db64f678d4d724c438ad5e1608be481a175928e4c4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/16/2025 3:01:40 AM UTC  (today)

File size:
7.1 MB (7,446,584 bytes)

Product version:
1, 0, 0, 1

Copyright:
{B166CCA7-3C5E-4e11-9D4F-582FB510777A}CompanyName#####################################################################################################

Original file name:
SothinkProcess.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\sothink media toolkit\sothinkprocess.exe

Digital Signature
Signed by:

Authority:
WoSign CA Limited

Valid from:
12/18/2015 3:46:31 PM

Valid to:
6/18/2016 3:46:31 PM

Subject:
CN=Zhang Qingming, L=Xin'an, S=Henan, C=CN

Issuer:
CN=WoSign Class 2 Code Signing CA G2, O=WoSign CA Limited, C=CN

Serial number:
3731129F75D9D5F070E5DBFF761417CC

File PE Metadata
Compilation timestamp:
3/31/2016 3:09:41 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
196608:mo8Z+BfRdLl0H/tf3JEejIMlYkcJTyh0nnx1LU+wPFj:IIlRdG//Ee8ENcZyh0nn/LdwPFj

Entry address:
0x1000

Entry point:
68, 01, D0, 49, 01, E8, 01, 00, 00, 00, C3, C3, 15, 0D, 02, 73, A2, 03, E6, 9B, B9, D3, 86, D8, D7, BD, 7D, F7, EF, EC, 42, D8, 33, A1, 34, 2A, 43, A1, 7B, 5A, 2A, B5, 3C, 1A, D7, 1A, D4, 49, 6C, DD, 34, DC, D6, 5B, F6, D6, 4E, CE, F2, D1, 2D, E5, 18, 80, 26, 3D, 46, 38, 59, D0, 99, 24, EE, 59, E7, FD, 29, CE, 86, 12, F5, 69, 62, F9, B6, 1C, F5, D8, C4, 29, 3B, BE, 7C, 63, 97, 96, 55, 3A, 38, 09, 2A, DA, 16, BF, F8, 1D, 4A, 27, 6B, A7, E1, 75, 28, E6, C9, C0, 76, 14, 7C, 72, F2, A7, 88, 40, 2F, 5B, 3B, B4...
 
[+]

Entropy:
7.9129

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
7.1 MB (7,429,632 bytes)

Scan SothinkProcess.exe - Powered by Reason Core Security