BaiduJPEngine.exe

BaiduJP IME Engine

Baidu Japan Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘BaiduType Converter(JP)’.
Publisher:
Baidu Inc.  (signed by Baidu Japan Inc.)

Product:
BaiduJP IME Engine

Version:
1, 0, 0, 16

MD5:
d8b1d8a0ba7c27f97be44f741763556e

SHA-1:
c7f67bf906fb8b120dbf12cb80ce26ae53782326

SHA-256:
eaedce76b2f05ec6413bb53848d8133b5674fc633242f2998b6dbaa0e411a482

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 2:50:25 AM UTC  (today)

File size:
86.5 KB (88,600 bytes)

Product version:
1, 0, 0, 16

Copyright:
Copyright (C) 2010

Original file name:
BaiduJPEngine.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\baidu\type\baidujpengine.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/23/2009 12:33:15 PM

Valid to:
12/24/2010 12:33:11 PM

Subject:
CN=Baidu Japan Inc., O=Baidu Japan Inc., L=Minato, S=Tokyo, C=JP

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000125B9B82369

File PE Metadata
Compilation timestamp:
6/4/2010 5:31:07 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x1DE9

Entry point:
E8, A2, 2E, 00, 00, E9, 17, FE, FF, FF, 51, C7, 01, BC, A2, 40, 00, E8, 25, 2F, 00, 00, 59, C3, 56, 8B, F1, E8, EA, FF, FF, FF, F6, 44, 24, 08, 01, 74, 07, 56, E8, 79, F6, FF, FF, 59, 8B, C6, 5E, C2, 04, 00, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B...
 
[+]

Entropy:
6.0317

Code size:
36 KB (36,864 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
BaiduType Converter(JP)

Command:
"C:\Program Files\baidu\type\baidujpengine.exe" -resident


Scan BaiduJPEngine.exe - Powered by Reason Core Security