| File Name | play.exe |
| File Type |
PE32 executable (GUI) Intel 80386, for MS Windows
|
| Scanner Version | 1.0.228.174 |
| Database Version | 2025-10-24 18:00:20 UTC |
No threats detected by our scanner
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
4299492c2a801cc96a1e34cc15a99278
|
|
| SHA1 |
130eeb5341737f2384b106a42f2de049075d9e29
|
|
| SHA256 |
0a424cb19b3e66541b876a4d757478a92b009a7c6bfcd5a5e05d4838639b732b
|
|
| SHA512 |
cde2959d15f1d3bbe29de54b2290b13d62016e7afd960b854dbe0962535b7e7ec3b960bc39fdaf7e0d94275b8838e88375b8efc9becad171dd6ba788be296a60
|
|
| ImpHash |
fcc840b83dbf57b5fc69cc69113d9788
|
| Icon |
Hash: 8f51bab54d189a9711acf9c564eca61f
Fuzzy: 9c71cdfb57cf3920d9d5a4031dd1fd68 dHash: 62f19c8aeae624f0 |
| Image Base | 0x00400000 |
| Entry Point | 0x00474f07 |
| Compilation Time | 2025-01-20 02:48:32 |
| Checksum | 0x001c44e6 (Actual: 0x001c44e6) |
| OS Version | 5.0 |
| PEiD Signatures |
PE32 executable (GUI) Intel 80386, for MS Windows
|
| PDB Path | E:\NDWork\ndsafelogin\Release\NdSafeLogin.pdb |
| Digital Signature | OK |
| Imports | 19 libraries |
| Exports | 3 functions |
| Resources | 76 Resources |
| Sections | 6 Sections |
| CompanyName | 网龙 |
| FileDescription | 99 Security Logger |
| FileVersion | 1.1.7.12 |
| InternalName | play.exe |
| LegalCopyright | 2025(C) <天晴数码>。保留所有权利。 |
| OriginalFilename | play.exe |
| ProductName | 99 Security Logger |
| ProductVersion | 1.1.7.12 |
| Translation | 0x0004 0x03a8 |
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
644,876 bytes | 645,120 bytes | 6.60 (Compressed) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
63A98CBBC2BF9B6B648CC5E8B910A866 |
.rdata |
0x0009f000 |
140,004 bytes | 140,288 bytes | 4.88 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
B120821C7FD7669BB098DFCA59991CB4 |
.data |
0x000c2000 |
322,360 bytes | 40,448 bytes | 3.01 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D4FAE3709521B2CB7A5A6001409053DE |
Share |
0x00111000 |
4 bytes | 512 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
BF619EAC0CDF3F68D496EA9344137E8B |
.rsrc |
0x00112000 |
936,604 bytes | 936,960 bytes | 6.59 (Compressed) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
47910B7F0DB5B44B3856E378491D26EC |
.reloc |
0x001f7000 |
69,136 bytes | 69,632 bytes | 4.97 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
C76CAF58B149313F3E329AF60FDAF564 |
2 section(s) with elevated entropy (≥6.5) - possible compression
| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| CONFIG | 1 | 4,096 bytes | |
| DLL | 1 | 726,016 bytes | |
| XML | 5 | 14,688 bytes | |
| RT_CURSOR | 16 | 4,800 bytes | |
| RT_BITMAP | 2 | 508 bytes | |
| RT_ICON | 6 | 175,078 bytes | |
| RT_DIALOG | 13 | 3,160 bytes | |
| RT_STRING | 13 | 2,412 bytes | |
| RT_GROUP_CURSOR | 15 | 314 bytes | |
| RT_GROUP_ICON | 1 | 90 bytes | |
| RT_VERSION | 1 | 716 bytes | |
| RT_MANIFEST | 1 | 633 bytes | |
| None | 1 | 10 bytes |
| Product | 99 Security Logger |
| Description | 99 Security Logger |
| File Version | 1.1.7.12 |
| Original Name | play.exe |
| Signing Date | 02:51 AM 01/20/2025 (356 days ago) |
| Verification Status | Signed |
| Signers | Fujian NetDragon Computer Network Information Technology Co.,Ltd; GlobalSign GCC R45 EV CodeSigning CA 2020; GlobalSign Code Signing Root R45 |
| Counter Signers | Globalsign TSA for Advanced - G4 - 202311; GlobalSign Timestamping CA - SHA384 - G4; GlobalSign Root CA - R6 |
| Internal Name | play.exe |
| Copyright | 2025(C) <天晴数码>。保留所有权利。 |
77 BD 0E 05 B7 59 0B B6 1D 47 61 53 1E 3F 75 ED04 80 60 FA E4 3D 97 C2 81 30 15 3601 19 75 74 71 C9 92 D7 44 DF A5 96 EB B9 70 1501 EC 1C 92 40 DE FD 2E 40 5D 7C 47 7445 E6 BB 03 83 33 C3 85 65 48 E6 FF 45 51✓ This file has been digitally signed and the certificate chain has been verified
OK
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!