_start.exe

Application _geolgps

Eversim

Publisher:
Eversim  (signed and verified)

Product:
Application _geolgps

Description:
Application _geolgps

Version:
4, 30, 0, 0

MD5:
86c4631c55f7a664f259233b67048b84

SHA-1:
991ccd1a9a5bd5023f3cd39a5e645945a4d2038f

SHA-256:
338929721aa00ff4f6e4fc15849b8ae407a339a4f25897c537033ff1562114c4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 1:52:07 AM UTC  (today)

File size:
4 MB (4,240,320 bytes)

Product version:
1, 0, 0, 1

Copyright:
Eversim Copyright (C) 2008

Original file name:
_geolgps.exe

File type:
Executable application (Win32 EXE)

Language:
Französisch (Frankreich)

Common path:
C:\Program Files\steam\steamapps\common\rulers of nations\_start.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/6/2013 1:00:00 AM

Valid to:
2/7/2015 12:59:59 AM

Subject:
CN=Eversim, O=Eversim, STREET=13 Place des Libertés Publiques, STREET=Immeuble le Mandinet II - Bat B, L=Lognes, S=Seine et Marne, PostalCode=77185, C=FR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00EB979B2F13B48AE0530AEDCAA0A5B5C2

File PE Metadata
Compilation timestamp:
7/25/2014 12:38:22 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:E2DEJb+6kXd8wEtWcTYnkfA+9sMbzhON2C/Q8yEZ60UxW8:E2IpfY+tunkx9xhS2NtNv

Entry address:
0x2AC0E000

Entry point:
EB, 05, E5, B9, B1, 34, 83, 50, EB, 02, 96, 65, E8, 1B, 00, 00, 00, EB, 05, 40, E6, 0B, EC, 9A, EB, 05, 9D, D3, 9C, 4A, 68, 33, C0, EB, 04, 94, E4, D7, 88, 71, 5C, EB, 01, 6C, EB, 03, F0, 26, 44, B8, 05, 48, F3, F6, EB, 01, 2C, EB, 03, 52, 42, 88, 05, FB, B7, 0C, 09, EB, 03, 3C, 99, 33, 75, 3B, EB, 02, C4, 4F, 64, FF, 30, EB, 01, 60, 64, 89, 20, EB, 04, 6C, 18, 8A, E7, EB, 01, 44, 8B, 10, EB, 02, C3, 1D, 64, 8F, 00, EB, 03, 4A, 10, 29, 83, C4, 04, EB, 02, 90, F5, 58, EB, 05, A8, 82, FD, 62, B7, C3, EB, 05...
 
[+]

Code size:
8.6 MB (9,056,256 bytes)

Scan _start.exe - Powered by Reason Core Security