XQWIZARD.EXE

XiangQi Wizard

Shanghai Xianqu Info-Tech Co., Ltd.

Publisher:
www.xqbase.com  (signed by Shanghai Xianqu Info-Tech Co., Ltd.)

Product:
XiangQi Wizard

Version:
5.20

MD5:
7e848259e08bcb4b36fe688f1ded6c7e

SHA-1:
4db678f66e5a024cdd20e2f231266ab38164cb63

SHA-256:
b6383cdbbf08c4399edd18303b3ea0de81053fbe5f66a4beeb34ec10c5b3ad5c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 1:30:44 AM UTC  (today)

File size:
999.1 KB (1,023,072 bytes)

Product version:
5.20

Copyright:
XiangQi Wizard 5.20, (C) 2004-2012 www.xqbase.com

Trademarks:
www.xqbase.com

Original file name:
XQWIZARD.EXE

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\xqwizard\xqwizard.exe

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
2/6/2012 6:53:09 PM

Valid to:
2/8/2013 6:36:16 AM

Subject:
E=webmaster@xqbase.com, CN="Shanghai Xianqu Info-Tech Co., Ltd.", O="Shanghai Xianqu Info-Tech Co., Ltd.", L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
0F6BDC3A865DC0

File PE Metadata
Compilation timestamp:
4/29/2012 1:03:32 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:Y5XUb9LgLuzneltBuqzK2su1s+YKLK65lN+sLhsmb2n1cVyHMXvNmK:bRvnelTXKk1BP5ldhsmq1ckHMf

Entry address:
0x3550

Entry point:
68, 50, 37, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 4A, 32, F9, FB, F0, C9, E7, 43, 80, C7, 10, 02, 86, CC, 72, E2, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 70, 72, 6A, 58, 51, 57, 69, 7A, 61, 72, 64, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 15, 00, 8C, 4C, 41, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, D0, 50, 41, 00, A0, E4, 4E, 00, 00, 00, 00, 00, 20, B3, 22, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6482

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
920 KB (942,080 bytes)

Scan XQWIZARD.EXE - Powered by Reason Core Security