Gridinsoft Logo
File Icon

The play.exe (99 Security Logger) File Analysis

Technical Analysis

File Name play.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.211.174
Database Version 2025-03-21 17:00:40 UTC
✓

Clean File

No threats detected by our scanner

0%
Detection Rate
1,485,296
File Size (bytes)
2025-03-21
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
11d95c832967101f8cf0304bb1e9e328
SHA1
27f29d9df1ed96f8336982520fca2d21d2a9c7aa
SHA256
7058c019c38060c134cacf63f5ee2ea3f7dca7998fc6dd6a8e9b516bf2c04b92
SHA512
faea13f864ef68b7cfa1fc27ecb83bd0e3d4598f9d9aa761b8f63a0aea45301e79d646872da247861848176ecf526e539cfba84c33c2f1bd74c9fb99db159a73
ImpHash
56bee6d8853ee1b61c078a2c3bb9ac62

PE Analysis

Basic Information

▼
Icon
Hash: e62cec0f6095ba8933eefd2963dbc298
Fuzzy: b41c402a2dc35986ffb5b7b7b7638b9f
dHash: f4f47452d1d0c8a8
Image Base 0x00400000
Entry Point 0x004616e8
Compilation Time 2017-10-14 06:19:07
Checksum 0x00173aec (Actual: 0x00173aec)
OS Version 5.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path E:\program files (x86)\NetDragon\Conquer Online 3.0\NdSafeLogin.pdb
Digital Signature OK
Imports 18 libraries
Exports 3 functions
Resources 76 Resources
Sections 5 Sections

Version Information

▼
CompanyName 网龙
FileDescription 99 Security Logger
FileVersion 1.1.0.9
InternalName play.exe
LegalCopyright 2012(C) <天晴数码>。保留所有权利。
OriginalFilename play.exe
ProductName 99 Security Logger
ProductVersion 1.1.0.9
Translation 0x0004 0x03a8

PE Sections

▼
Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 507,388 bytes 507,392 bytes 6.60 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 6C4349C584CA4A78C0D9696FE7C5C922
.rdata 0x0007d000 111,172 bytes 111,616 bytes 5.08 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 1A7970034B40E483CBA2458D2CAD3E17
.data 0x00099000 38,492 bytes 21,504 bytes 3.75 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE DF397DFBF085BF86C891ED9626876CA1
.rsrc 0x000a3000 775,872 bytes 776,192 bytes 6.45 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 48438615D12D17DC0561A7559622B613
.reloc 0x00161000 58,972 bytes 59,392 bytes 4.86 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 3902C879F7AEA9761DC6D602FBA9EEAA
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

▼
Total Resources: 76 (771,873 bytes)
Resource Type Count Total Size Percentage
CONFIG 1 4,096 bytes
0.5%
DLL 1 726,016 bytes
94.1%
RT_CURSOR 16 4,800 bytes
0.6%
RT_BITMAP 2 508 bytes
0.1%
RT_ICON 12 29,728 bytes
3.9%
RT_DIALOG 12 2,750 bytes
0.4%
RT_STRING 13 2,412 bytes
0.3%
RT_GROUP_CURSOR 15 314 bytes
0%
RT_GROUP_ICON 1 174 bytes
0%
RT_VERSION 1 708 bytes
0.1%
RT_MANIFEST 1 357 bytes
0%
None 1 10 bytes
0%

Certificate Chain Analysis

▼
Certificate Information
Product 99 Security Logger
Description 99 Security Logger
File Version 1.1.0.9
Original Name play.exe
Signing Date 06:23 AM 10/14/2017 (2793 days ago)
Verification Status Signed
Signers Fujian NetDragon Computer Network Information Technology Co.,Ltd; Symantec Class 3 SHA256 Code Signing CA; VeriSign
Counter Signers WoSign Time Stamping Signer; WoSign
Internal Name play.exe
Copyright 2012(C) <天晴数码>。保留所有权利。
Certificate Chain Summary
WoSign Time Stamping Signer #1 Primary
Validity Period: 2009-08-08 01:00:05 → 2024-08-08 01:00:05
Signature Algorithm: sha1RSA
Serial Number: 25 1F 5D 98 81 82 17 2E 3C 41 9E 01 4F B0 40 4C
Symantec Class 3 SHA256 Code Signing CA #2 Chain
Validity Period: 2013-12-10 00:00:00 → 2023-12-09 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 3D 78 D7 F9 76 49 60 B2 61 7D F4 F0 1E CA 86 2A
Fujian NetDragon Computer Network Information Technology Co.,Ltd #3 Chain
Validity Period: 2016-05-24 00:00:00 → 2019-07-23 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 57 B2 45 71 79 C8 EF 44 0E 31 BE 22 5A 26 E9 36
Certification Authority of WoSign #4 Chain
Validity Period: 2009-08-08 01:00:01 → 2039-08-08 01:00:01
Signature Algorithm: sha1RSA
Serial Number: 5E 68 D6 11 71 94 63 50 56 00 68 F3 3E C9 C5 91
VeriSign Class 3 Public Primary Certification Authority - G5 #5 Chain
Validity Period: 2011-02-22 19:25:17 → 2021-02-22 19:35:17
Signature Algorithm: sha1RSA
Serial Number: 61 19 93 E4 00 00 00 00 00 1C

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware