quickup.exe

NAutoUp

Sen News Company Limited

Publisher:
netimo  (signed by Sen News Company Limited)

Product:
NAutoUp

Version:
1.00.0391

MD5:
e67ebf0c8b89dd8b0a6b8037559aa6c7

SHA-1:
cc6aa9a9ccd8c3b7744e7ba489e6829f37c0baa4

SHA-256:
bdd93f91215bc795dc0fbb7ab2531009ed9421d47a1d2b2064d7b75aa2ef04ba

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/18/2024 3:44:38 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win-PUP/Helper.Quicker.203784
2013.07.22

File size:
199 KB (203,784 bytes)

Product version:
1.00.0391

Original file name:
nautoup.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\quicker\quickup.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
1/30/2012 9:00:00 AM

Valid to:
1/30/2014 8:59:59 AM

Subject:
CN=Sen News Company Limited, O=Sen News Company Limited, L=Mapo-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
732056471DEDE78458D6CF97A81B8B50

File PE Metadata
Compilation timestamp:
11/2/2012 11:16:27 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:OTAnP47aJUgXxRfPYTQLH2wOQXS5Tj/q:USP47aJUORfwQLH2w9S5TW

Entry address:
0x3B00

Entry point:
68, 58, 3E, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, 92, 34, F5, 22, A7, 08, 7A, 4A, BE, 73, C9, 2C, 76, A4, 8F, 57, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 78, 70, 6C, 69, 63, 69, 4E, 41, 75, 74, 6F, 55, 70, 00, 00, 00, 00, 00, 01, 00, 01, 00, 34, 50, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, B8, 50, 40, 00, 18, D0, 42, 00, 00, 00, 00, 00, A0, 45, 20, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 80, 3B, 40, 00...
 
[+]

Entropy:
5.9428

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
176 KB (180,224 bytes)

Scan quickup.exe - Powered by Reason Core Security