voiplay.exe

VOIPlay

Electronic Sports Network i Sverige AB

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘VOIPlay’.
Publisher:
E-Sport Network AB & VOIPlay AB  (signed by Electronic Sports Network i Sverige AB)

Product:
VOIPlay

Version:
1, 0, 0, 1

MD5:
0daca5150cf20d0e1b655c250d5d1610

SHA-1:
176c68f92972bd526066c57aa10f19a90b9cdacc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 4:50:28 PM UTC  (today)

File size:
1.2 MB (1,299,816 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright (C) 2008

Original file name:
voiplay.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/27/2009 1:00:00 AM

Valid to:
10/27/2012 1:59:59 AM

Subject:
CN=Electronic Sports Network i Sverige AB, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Electronic Sports Network i Sverige AB, L=Uppsala, S=N/A, C=SE

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0981FFEB002583B6794513055FC0ADD5

File PE Metadata
Compilation timestamp:
1/13/2010 11:53:40 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:Ou6A5l8UqoIQeuCTAoftX30au2x8VYkqtBFUH7+Hqm+rWRoY:jHljZ7n3OXEbQ8mkqtGar+r1Y

Entry address:
0x1000

Entry point:
B8, E4, 2D, 8E, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, DD, CB, 75, 4B, F6, B6, AF, 1B, 37, 9A, 09, E9, 6B, 56, 28, 6E, 56, 81, 99, 3B, 3C, 9F, 36, E8, 51, B0, 21, 5F, 3B, 29, A8, 87, E0, 66, 6F, 2D, 71, BE, BC, A7, 89, 9F, 5B, A8, FB, 89, 7C, AD, E5, BF, AF, AB, 6C, 5E, 0E, 82, 16, 8D, 4C, 0D, 30, 47, 65, 16, 65, 50, C9, 13, 8E, 89, 88, D9, 39, 21, D3, 6C, 91, E1, 21, 49, 97, FF, 15, 77, 8D, 8C, ED, 12, 39, 29, 0C, EA, 8C...
 
[+]

Packer / compiler:
PECompact v2

Code size:
3.4 MB (3,587,072 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
VOIPlay

Command:
"C:\programmer\voiplay\voiplay.exe"


Scan voiplay.exe - Powered by Reason Core Security