WebThunder.exe

WEB迅雷

ShenZhen Thunder Networking Technologies Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘WebThunder’.
Publisher:
深圳市迅雷网络技术有限公司  (signed by ShenZhen Thunder Networking Technologies Ltd.)

Product:
WEB迅雷

Version:
1, 12, 3, 214

MD5:
c5c6ccff385af3519736694b30e7cadf

SHA-1:
c43760632a22918e467dd9a0ce744e9905d271ca

SHA-256:
e90e3ff1851b58287a5e90c23c9a179308bd842049a019f2b63f97dca8daae8f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 6:47:23 PM UTC  (today)

File size:
641.4 KB (656,800 bytes)

Product version:
1, 12, 3, 214

Copyright:
Copyright 2008

Original file name:
WebThunder.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\thunder network\webthunder\webthunder.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/26/2006 8:00:00 AM

Valid to:
6/1/2009 7:59:59 AM

Subject:
CN=ShenZhen Thunder Networking Technologies Ltd., OU=Department of System Engineering, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=ShenZhen Thunder Networking Technologies Ltd., L=ShenZhen, S=GuangDong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3DC309C2ED0EE43509FC8BD868BC4CFD

File PE Metadata
Compilation timestamp:
4/8/2008 10:23:56 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

Entry address:
0x48046

Entry point:
6A, 74, 68, 90, 37, 45, 00, E8, 52, FB, FF, FF, 33, DB, 89, 5D, E0, 53, 8B, 3D, E8, E1, 44, 00, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03, C8, 81, 39, 50, 45, 00, 00, 75, 12, 0F, B7, 41, 18, 3D, 0B, 01, 00, 00, 74, 1F, 3D, 0B, 02, 00, 00, 74, 05, 89, 5D, E4, EB, 27, 83, B9, 84, 00, 00, 00, 0E, 76, F2, 33, C0, 39, 99, F8, 00, 00, 00, EB, 0E, 83, 79, 74, 0E, 76, E2, 33, C0, 39, 99, E8, 00, 00, 00, 0F, 95, C0, 89, 45, E4, 89, 5D, FC, 6A, 02, FF, 15, E4, E3, 44, 00, 59, 83, 0D, 74, 33, 46, 00, FF, 83...
 
[+]

Entropy:
6.0497

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
308 KB (315,392 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
WebThunder

Command:
C:\Program Files\thunder network\webthunder\webthunder.exe


Scan WebThunder.exe - Powered by Reason Core Security