iKu.exe

i 酷 客户端

Youku.com Inc.

Publisher:
优酷网  (signed by Youku.com Inc.)

Product:
i 酷 客户端

Version:
1.6.7.488

MD5:
a82db3a61035e01ebe108638f6ae6d25

SHA-1:
ba3d292f1cf8c69957c4a1838e70b9957a56547d

SHA-256:
b2953294bfcea3616856d1ac4d226e8d6c7a1a8632b077592ce3db4dd8e5d823

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/19/2024 11:56:41 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

K7 AntiVirus
Trojan
13.175.11074

File size:
465 KB (476,192 bytes)

Product version:
1.0.1.0

Original file name:
iKu.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, PRC)

Common path:
C:\Program Files\youku\iku\iku.exe

Digital Signature
Signed by:

Authority:
WoSign, Inc.

Valid from:
10/12/2008 5:00:00 PM

Valid to:
10/13/2011 4:59:59 PM

Subject:
CN=Youku.com Inc., OU=WoSign Class 3 Code Signing, O=Youku.com Inc., L=George Town, S=George Town, C=KY

Issuer:
CN=WoSign Code Signing Authority, O="WoSign, Inc.", C=US

Serial number:
5F11DACD61BB0B11AF0D70410A3F8794

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:y57a2ooafORCnXRw298HIK4rwkHjAuXyvsZzwQxUslj9jvzeG9vetBDp0r5DG0qS:yfqxGLesSckzr6slj9j7ltetZAYr79/c

Entry address:
0x14F980

Entry point:
60, BE, 00, 50, 4E, 00, 8D, BE, 00, C0, F1, FF, C7, 87, A0, B0, 0E, 00, 05, D1, 6A, 83, 57, 83, CD, FF, EB, 0E, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46...
 
[+]

Entropy:
7.8747

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.22 (Delphi) stub

Code size:
428 KB (438,272 bytes)

Scan iKu.exe - Powered by Reason Core Security