update.exe

鲁大师 升级模块

Chengdu Qiying Technology Co.,Ltd.

Publisher:
成都奇英科技有限公司  (signed by Chengdu Qiying Technology Co.,Ltd.)

Product:
鲁大师 升级模块

Version:
1.1.10.1015

MD5:
37d479dfff8292154f1f7407bbbf9316

SHA-1:
5a6fab9c0dbc5a1dfb4073102e0c1987726757e2

SHA-256:
987365565c51122d0377638b89d10a58222cba6f0ae86d52971707975c16239f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 5:02:47 AM UTC  (today)

File size:
108.9 KB (111,480 bytes)

Product version:
1.1

Copyright:
版权所有 (C) 2010 成都奇英科技有限公司

Original file name:
update.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, PRC)

Common path:
C:\Program Files\ludashi\update.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/31/2010 8:00:00 AM

Valid to:
4/1/2011 7:59:59 AM

Subject:
CN="Chengdu Qiying Technology Co.,Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Chengdu Qiying Technology Co.,Ltd.", L=Chengdu, S=Sichuan, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
61359AC44514D781769FD643666B4572

File PE Metadata
Compilation timestamp:
6/20/1992 6:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
3072:AuQTPE5qKinyp3xEMht5hSmKT0KHjdeqSPg67hMj4u:AuQT8w1yp3BX0eqB4u

Entry address:
0x152DC

Entry point:
55, 8B, EC, 83, C4, F0, B8, 44, 52, 41, 00, E8, DC, 0A, FF, FF, E8, 9B, FC, FF, FF, 84, C0, 74, 14, E8, EA, F5, FF, FF, E8, 4D, F6, FF, FF, E8, 04, FB, FF, FF, E8, 1B, FA, FF, FF, E8, E2, EC, FE, FF, 8B, C0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.5359

Developed / compiled with:
Microsoft Visual C++

Code size:
81 KB (82,944 bytes)

Scan update.exe - Powered by Reason Core Security