ruijiesupplicant.exe

Upgrade 应用程序

FUJIAN RUIJIE NETWORKS CO.,LTD.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Supplicant’.
Publisher:
FUJIAN RUIJIE NETWORKS CO.,LTD.  (signed and verified)

Product:
Upgrade 应用程序

Description:
Upgrade Microsoft 基础类应用程序

Version:
1, 1, 0, 1

MD5:
6def1337386f662f9ccb33d065f3a576

SHA-1:
68f6083df44ae930b28078408c388e94fa35565c

SHA-256:
31b584ee3ec54fc3775eb6b79c334050b2ce63a68c44e7b9124dc36de20fd486

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/1/2024 5:01:02 AM UTC  (today)

File size:
255.4 KB (261,560 bytes)

Product version:
1, 1, 0, 1

Copyright:
版权所有 (C) 2002

Original file name:
Upgrade.EXE

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\Program Files\èñ½ýíøâç\ruijie supplicant\ruijiesupplicant.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/28/2014 5:00:00 PM

Valid to:
6/17/2017 4:59:59 PM

Subject:
CN="FUJIAN RUIJIE NETWORKS CO.,LTD.", O="FUJIAN RUIJIE NETWORKS CO.,LTD.", L=fuzhou, S=fujian, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
59F799D7F63949CD0F689B26D980BCA0

File PE Metadata
Compilation timestamp:
6/3/2014 8:06:26 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:W8ohhG5BuGIy8TS89wNFDh5HwbvqzRJb46jSehYz8gCs/bkYYlqivtU1zXGZ:MuLpeS8qNFDrHYH6jxfs/WUp1zXE

Entry address:
0x16824

Entry point:
E8, 5E, B5, 00, 00, E9, 16, FE, FF, FF, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 68, 8A, 43, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 68, 8A, 43, 00, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B...
 
[+]

Entropy:
6.3490

Code size:
172 KB (176,128 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Supplicant

Command:
C:\Program Files\èñ½ýíøâç\ruijie supplicant\ruijiesupplicant.exe -tip


Scan ruijiesupplicant.exe - Powered by Reason Core Security