VOMixer.exe

VOMixer

4NB Corp.

Publisher:
4NB Corp.  (signed and verified)

Product:
VOMixer

Description:
4NB VOMixer

Version:
6.0.5.401

MD5:
fd3a38d30bf015bfcc3958f67fe17248

SHA-1:
c9c8f787a2be442b9edb932aa274c66c64558705

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/24/2024 8:27:18 AM UTC  (today)

Scan engine
Detection
Engine version

AegisLab AV Signature
Troj.GameThief.W32.OnLineGames.l6ps
2.1.4+

File size:
1.1 MB (1,104,488 bytes)

Product version:
1.0.0.0

Copyright:
4NB Corp.

Trademarks:
4NB Corp.

Original file name:
VOMixer.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Documents and Settings\{user}\Application data\4nb\4nb\vschool_6.1.2_bw\vomixer.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
6/22/2011 9:00:00 AM

Valid to:
7/22/2013 8:59:59 AM

Subject:
CN=4NB Corp., OU=tigation Development Team, O=4NB Corp., L=Seongdong-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
4E1AA28FA46D6088D27178F4A59F57BE

File PE Metadata
Compilation timestamp:
6/20/1992 7:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:HFRZ1zwZDQWGWyO3jeC5eWSsLmH/qZKipqw9HGH:HF58NGWyYjzEOkq4YqSH

Entry address:
0xE2B78

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, D8, 26, 4E, 00, E8, 57, 44, F2, FF, 68, 04, 2C, 4E, 00, 6A, FF, 6A, 00, E8, B1, 46, F2, FF, 8B, D8, 85, DB, 74, 5F, E8, 36, 48, F2, FF, 85, C0, 75, 56, A1, A4, B7, 4E, 00, 8B, 00, E8, A2, D8, FC, FF, A1, A4, B7, 4E, 00, 8B, 00, C6, 40, 5B, 00, A1, A4, B7, 4E, 00, 8B, 00, BA, 14, 2C, 4E, 00, E8, 96, D4, FC, FF, 8B, 0D, 68, B5, 4E, 00, A1, A4, B7, 4E, 00, 8B, 00, 8B, 15, 78, 0D, 4E, 00, E8, 86, D8, FC, FF, A1, A4, B7, 4E, 00, 8B, 00, E8, FA, D8, FC, FF, 85, DB, 74, 06, 53, E8...
 
[+]

Entropy:
6.6711

Developed / compiled with:
Microsoft Visual C++

Code size:
903.5 KB (925,184 bytes)

Windows Firewall Allowed Program
Name:
C:\Documents and Settings\All Users\Application Data\4NB\4NB\VSchool_6.1.2_BW\VOMixer.exe


Scan VOMixer.exe - Powered by Reason Core Security