setup_r1_1.exe

瓢虫锁屏

GuangxiNanningshi Shengtaian E-Commerce Development Co.,LTD.

Publisher:
恒生电子有限公司  (signed by GuangxiNanningshi Shengtaian E-Commerce Development Co.,LTD.)

Product:
瓢虫锁屏

Description:
瓢虫锁屏安装程序

Version:
1, 0, 0, 3

MD5:
f681f81925c1b71c4ce8bbb926f5491e

SHA-1:
aed7dd9f7e2482c29f71d54989562dd6e2413eae

SHA-256:
81458a46705d79ef3260dcc51988452bce01e8011077c031ce4b07a990624dcb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 7:18:40 AM UTC  (today)

File size:
2.2 MB (2,268,072 bytes)

Product version:
1.0.0.1

Original file name:
setup

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\users\{user}\downloads\setup_r1_1.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
4/24/2014 8:00:00 AM

Valid to:
4/25/2015 7:59:59 AM

Subject:
CN="GuangxiNanningshi Shengtaian E-Commerce Development Co.,LTD.", O="GuangxiNanningshi Shengtaian E-Commerce Development Co.,LTD.", L=Nanning, S=Guangxi, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
57A07F5F478EC9930DB77FC749A93A8F

File PE Metadata
Compilation timestamp:
4/29/2015 10:11:33 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:38IqX53SNWJRuOSa7Vk3vUo9t/Qu0Z6KY6JEcDZwmy963xJVFwqrfgM+dUxkzVfq:ikCgaKsovsZcKwh9gVFDDmJzVfHpU

Entry address:
0xD6530

Entry point:
55, 8B, EC, E8, 88, 2B, 01, 00, E8, 03, 00, 00, 00, 5D, C3, CC, 55, 8B, EC, 6A, FE, 68, 30, 14, 5C, 00, 68, 80, 41, 4E, 00, 64, A1, 00, 00, 00, 00, 50, 81, C4, 78, FF, FF, FF, 53, 56, 57, A1, 20, CC, 5C, 00, 31, 45, F8, 33, C5, 50, 8D, 45, F0, 64, A3, 00, 00, 00, 00, 89, 65, E8, C7, 45, 88, 00, 00, 00, 00, C7, 85, 74, FF, FF, FF, 00, 00, 00, 00, C7, 45, E4, 00, 00, 00, 00, C7, 45, 80, 00, 00, 00, 00, C7, 85, 7C, FF, FF, FF, 00, 00, 00, 00, C7, 85, 78, FF, FF, FF, 00, 00, 00, 00, C7, 45, FC, 00, 00, 00, 00...
 
[+]

Entropy:
6.6490

Developed / compiled with:
Microsoft Visual C++

Code size:
1.2 MB (1,208,320 bytes)

Scan setup_r1_1.exe - Powered by Reason Core Security