e353update_21.158.47.01.864.b757_sign.exe

Update Wizard

Huawei Technologies Co.,Ltd.

This is a setup program which is used to install the application. The file has been seen being downloaded from mobiililaajakaista-dms.saunalahti.fi and multiple other hosts.
Publisher:
Huawei Technologies Co.,Ltd.  (signed and verified)

Product:
Update Wizard

Description:
Update Wizard Application

Version:
7, 0, 5, 7

MD5:
29ee37c7a5481b541831176904e9238d

SHA-1:
f2650c92d3d9f6826c486befb044b8dcdd1bc22a

SHA-256:
82a15998382fd5521e2a6b3cb76d47df21438d17fe37a3575b81a11227617077

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/10/2025 11:33:38 AM UTC  (today)

File size:
24.4 MB (25,619,032 bytes)

Product version:
7, 0, 5, 7

Copyright:
Copyright (C) 2011

Original file name:
Update Wizard

File type:
Executable application (Win32 EXE)

Language:
kiina (yksinkertaistettu, Kiina)

Common path:
C:\Program Files\elisa\mobiililaajakaista-ohjelma\data\autoupdate\f424adce9cb2c4bd65603b72e3d977e9\e353update_21.158.47.01.864.b757_sign.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/26/2014 3:00:00 AM

Valid to:
10/25/2017 2:59:59 AM

Subject:
CN="Huawei Technologies Co.,Ltd.", OU=Handset Engineer Testing Department (Dongguan), O="Huawei Technologies Co.,Ltd.", L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4C1A3D7C5BDAEF3E1166416AFE8138E9

File PE Metadata
Compilation timestamp:
8/26/2011 6:57:36 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
393216:dkmiCKFdu9ORaVNQncGiOTxowhmVytML5kGufmgIeifea61ACeDK:XyKjkTOqFjSdDK

Entry address:
0xF5BB

Entry point:
E8, 93, 68, 00, 00, E9, 16, FE, FF, FF, 6A, 00, FF, 74, 24, 14, FF, 74, 24, 14, FF, 74, 24, 14, FF, 74, 24, 14, E8, 0B, 69, 00, 00, 83, C4, 14, C3, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9, 00, 00, FF, 00, 74, 13, A9...
 
[+]

Code size:
128 KB (131,072 bytes)

The file e353update_21.158.47.01.864.b757_sign.exe has been seen being distributed by the following 19 URLs.

https://mobiililaajakaista-dms.saunalahti.fi:883/files/public/f424adce9cb2c4bd65603b72e3d977e9//{D435CF2A-DC03-49B6-97D3-C5D0F67A5DC0}//E353Update_21.158.47.01.864.B757_Sign.exe

https://mobiililaajakaista-dms.saunalahti.fi:883/files/public/f424adce9cb2c4bd65603b72e3d977e9//{D68B2AAE-2BE9-4261-AB79-98FB992FD13D}/.../E353Update_21.158.47.01.864.B757_Sign.exe

https://mobiililaajakaista-dms.saunalahti.fi:883/files/public/f424adce9cb2c4bd65603b72e3d977e9//$USERNAME$/.../E353Update_21.158.47.01.864.B757_Sign.exe

https://mobiililaajakaista-dms.saunalahti.fi:883/files/public/f424adce9cb2c4bd65603b72e3d977e9//{78977E72-3882-46E0-AA70-796BA3290A71}//E353Update_21.158.47.01.864.B757_Sign.exe

https://mobiililaajakaista-dms.saunalahti.fi:883/files/public/f424adce9cb2c4bd65603b72e3d977e9//{F1F9645B-9089-4FF9-A3BF-E72B3F8ED19C}//E353Update_21.158.47.01.864.B757_Sign.exe

https://mobiililaajakaista-dms.saunalahti.fi:883/files/public/f424adce9cb2c4bd65603b72e3d977e9//{F9AC5473-B066-442B-8279-9AF41EB0E66F}//E353Update_21.158.47.01.864.B757_Sign.exe

Scan e353update_21.158.47.01.864.b757_sign.exe - Powered by Reason Core Security