DirFixer.exe

贝壳木马专杀

Beike Internet Security Technology Co.,Ltd

Publisher:
贝壳网际(北京)安全技术有限公司  (signed by Beike Internet Security Technology Co.,Ltd)

Product:
贝壳木马专杀

Description:
文件夹exe病毒专杀

Version:
2010.2.20.40

MD5:
dab368cfbff3e589804847b094c35c33

SHA-1:
4fc38cd944732c8ffa81dadbe6cdad33d205ceb5

SHA-256:
cd41094161fe23ae078a6d4b769c9a91540e883c630b251eb9656438f14a5252

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/26/2024 11:21:05 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Evo-gen [Susp]
160518-2

File size:
289.3 KB (296,256 bytes)

Product version:
1.0.4651.40

Copyright:
Beike Internet Security Technology Co.,Ltd

Original file name:
DirFixer.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/15/2009 8:00:00 AM

Valid to:
5/16/2010 7:59:59 AM

Subject:
CN="Beike Internet Security Technology Co.,Ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Beike Internet Security Technology Co.,Ltd", L=BEIJING, S=BEIJING, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1327C649F41D2E2D8D892F1EB1DF4A32

File PE Metadata
Compilation timestamp:
2/20/2010 6:42:54 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:fnP+tjVVAs+NRwmSABbS1+MbahnLiC3qVsr+X5mg5pAPIQuUOiExnCC:fLs+NXTb9pJrk5kiUOr

Entry address:
0xECF3

Entry point:
E8, 37, 5D, 00, 00, E9, 17, FE, FF, FF, 55, 8B, EC, 8B, 45, 14, 56, 57, 33, FF, 3B, C7, 74, 47, 39, 7D, 08, 75, 1B, E8, 70, 1D, 00, 00, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, 72, 21, 00, 00, 83, C4, 14, 8B, C6, EB, 29, 39, 7D, 10, 74, E0, 39, 45, 0C, 73, 0E, E8, 4B, 1D, 00, 00, 6A, 22, 59, 89, 08, 8B, F1, EB, D7, 50, FF, 75, 10, FF, 75, 08, E8, 61, EE, FF, FF, 83, C4, 0C, 33, C0, 5F, 5E, 5D, C3, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 69, 33, C0, 8A, 44, 24, 08, 84...
 
[+]

Entropy:
6.5115

Code size:
200 KB (204,800 bytes)

Scan DirFixer.exe - Powered by Reason Core Security