fxdoctord.exe

Fetion

China Mobile Communications Corporation

Publisher:
China Mobile  (signed by China Mobile Communications Corporation)

Product:
Fetion

Description:
飞信医生

Version:
1, 0, 1, 1

MD5:
37c85b0be305701c6c9fdc49d180557d

SHA-1:
b45cdb0fc49bc1c689acd937cdec6a727fdb3c02

SHA-256:
5c2bac2f7b32ea22feacd357b97628e1d72cb7b424d152c197e9ca81f9bbb6db

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 3:56:01 AM UTC  (today)

File size:
320.7 KB (328,376 bytes)

Product version:
1, 0, 1, 1

Copyright:
Copyright (C) 2010 China Mobile Limited. All rights reserved.

Original file name:
FxDoctor.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\china mobile\fetion\fetiondoctor\fxdoctord.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/26/2010 8:00:00 AM

Valid to:
1/26/2013 7:59:59 AM

Subject:
CN=China Mobile Communications Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=China Mobile Communications Corporation, L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4EA536D132EFAA076646AA7F5D8F3E99

File PE Metadata
Compilation timestamp:
6/9/2011 4:08:08 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:QbUo7eVAw5L7Za+CKine6wXizsGuol1uCQuMH+IdoVHwb87U763O2fwr:QbUoiD7ZxywXizsGp1jMeooFwb873ONr

Entry address:
0x1D7AC

Entry point:
E9, BF, 14, 03, 00, E9, BA, D3, 01, 00, E9, F9, 2B, 03, 00, E9, E0, E4, 00, 00, E9, 5B, 90, 02, 00, E9, F6, BE, 00, 00, E9, 01, 47, 02, 00, E9, 4C, 29, 01, 00, E9, 57, 06, 01, 00, E9, 42, 28, 01, 00, E9, 5D, 00, 03, 00, E9, 12, 1B, 03, 00, E9, D3, 64, 01, 00, E9, 8E, 91, 02, 00, E9, 49, B2, 02, 00, E9, 84, 5A, 00, 00, E9, 6B, 12, 03, 00, E9, 7A, 05, 02, 00, E9, 35, E4, 01, 00, E9, 38, 2E, 03, 00, E9, DB, D3, 01, 00, E9, 06, B5, 00, 00, E9, F1, 42, 00, 00, E9, 2C, 1C, 03, 00, E9, ED, B1, 02, 00, E9, 0E, 2E...
 
[+]

Entropy:
5.2488

Developed / compiled with:
Microsoft Visual C++ 8.0 (Debug)

Code size:
240.5 KB (246,272 bytes)

Scan fxdoctord.exe - Powered by Reason Core Security