zzamga_x64.exe

Nadsoft Inc.

Publisher:
NADSOFT INC  (signed by Nadsoft Inc.)

Product:
<SISS DLP Agent Module>

Description:
Loader_X64

Version:
113.10718.101.64

MD5:
224b0ab3bc2a7fe1a3bef027bd7a1be0

SHA-1:
c413f8ccef1866e331c43698e17ab0527efcc2b6

SHA-256:
00a7d60dd032e34a71fa9f7ebcbd529838a1b82bc51056716fd4a007ba181564

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 8:12:18 AM UTC  (today)

File size:
2.7 MB (2,870,488 bytes)

Product version:
113.10718.101.64

Copyright:
<NADSOFT Inc>. 모든 권리 보유.

Original file name:
Loader_X64.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\zzamga\zzamga_x64.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
2/5/2013 9:00:00 AM

Valid to:
2/6/2014 8:59:59 AM

Subject:
CN=Nadsoft Inc., OU=Development Dept., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Nadsoft Inc., L=Haeundae-gu, S=Busan, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7B662F33D982D8A1856B52949F1C6C5C

File PE Metadata
Compilation timestamp:
7/18/2013 4:39:07 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:x9nypAGtjF+gAAwO+GNc3qIdU10kIqGTb7624Y5+jM1s4tx/Zm:xSdNgqI1bW24Y5DrI

Entry address:
0x153640

Entry point:
48, 83, EC, 28, E8, 93, 99, 00, 00, 48, 83, C4, 28, E9, 52, FE, FF, FF, CC, CC, 48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 48, 8B, D9, 48, 83, F9, E0, 77, 7C, BF, 01, 00, 00, 00, 48, 85, C9, 48, 0F, 45, F9, 48, 8B, 0D, 49, E9, 0B, 00, 48, 85, C9, 75, 20, E8, 3B, 8E, 00, 00, B9, 1E, 00, 00, 00, E8, D1, 8B, 00, 00, B9, FF, 00, 00, 00, E8, 5F, 07, 00, 00, 48, 8B, 0D, 24, E9, 0B, 00, 4C, 8B, C7, 33, D2, FF, 15, 61, 5E, 02, 00, 48, 8B, F0, 48, 85, C0, 75, 2C, 39, 05, 1B, E9, 0B, 00, 74, 0E, 48...
 
[+]

Entropy:
5.7607

Code size:
1.5 MB (1,539,072 bytes)

Scan zzamga_x64.exe - Powered by Reason Core Security