XQWIZARD.EXE

XiangQi Wizard

Shanghai Xianqu Info-Tech Co., Ltd.

Publisher:
www.xqbase.com  (signed by Shanghai Xianqu Info-Tech Co., Ltd.)

Product:
XiangQi Wizard

Version:
5.20

MD5:
2b8b7c5cf1f0876aebcd1214012017de

SHA-1:
4b311edd80625ca21f4a1ec565f8daf521869e66

SHA-256:
623cf5ba0a631ae7913296fbdcb5f4838973fd33671e9b38595d677b1441243b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 10:29:23 PM UTC  (today)

File size:
1011.1 KB (1,035,360 bytes)

Product version:
5.20

Copyright:
XiangQi Wizard 5.20, (C) 2004-2012 www.xqbase.com

Trademarks:
www.xqbase.com

Original file name:
XQWIZARD.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
2/6/2012 6:53:09 PM

Valid to:
2/8/2013 6:36:16 AM

Subject:
E=webmaster@xqbase.com, CN="Shanghai Xianqu Info-Tech Co., Ltd.", O="Shanghai Xianqu Info-Tech Co., Ltd.", L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
0F6BDC3A865DC0

File PE Metadata
Compilation timestamp:
5/22/2012 8:18:40 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:fJ9H0Luzh482hH1tLD8J8a9mAcR5cTI6NASmBiruqsUaIgnYmctxN:Hz6XV1tg8akAS5c8SmB9Yl

Entry address:
0x3578

Entry point:
68, 24, 37, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 48, D4, 23, D1, 7B, 63, DF, 48, 93, B9, 40, 6C, 19, 3B, 50, C0, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 20, 20, 20, 20, 3D, 20, 70, 72, 6A, 58, 51, 57, 69, 7A, 61, 72, 64, 00, 22, 3A, 33, 44, 00, 00, 00, 00, 01, 00, 14, 00, B8, 4C, 41, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, CC, 50, 41, 00, 90, 14, 4F, 00, 00, 00, 00, 00, 68, 4F, 21, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.7218

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
932 KB (954,368 bytes)

Scan XQWIZARD.EXE - Powered by Reason Core Security