update.exe

Hangzhou Guiyi Technology Ltd

Publisher:
Hangzhou Guiyi Technology Ltd  (signed and verified)

MD5:
805cb6e5da4d07e90aa802d59c421f4e

SHA-1:
da1ab05a2464ff052fb4015609d37a5e921829b6

SHA-256:
baf51eeb1f1e5db26edba1cdcf6365490ac7615be70360dae936cd91276da299

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 6:36:09 PM UTC  (today)

File size:
58.3 KB (59,712 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\1checker\update.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/8/2012 5:00:00 PM

Valid to:
3/8/2013 4:59:59 PM

Subject:
CN=Hangzhou Guiyi Technology Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Hangzhou Guiyi Technology Ltd, L=Hangzhou, S=Zhejiang, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1B5FCA30A61246E9AF93E087F051C27F

File PE Metadata
Compilation timestamp:
1/25/2013 1:23:42 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:sPe/+Pvj5KscE/WevelnM3OKNbSzucNlkHz:sW/+D5KyRvelnM3OKNbSqT

Entry address:
0x61B8

Entry point:
E8, FC, 05, 00, 00, E9, 63, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 83, 3D, DC, D4, 40, 00, 00, 74, 2D, 55, 8B, EC, 83, EC, 08, 83, E4, F8, DD, 1C, 24, F2, 0F, 2C, 04, 24, C9, C3, 83, 3D, DC, D4, 40, 00, 00, 74, 11, 83, EC, 04, D9, 3C, 24, 58, 66, 83, E0, 7F, 66, 83, F8, 7F, 74, D3, 55, 8B, EC, 83, EC, 20, 83, E4, F0, D9, C0, D9, 54, 24, 18, DF, 7C, 24, 10, DF, 6C, 24, 10, 8B, 54, 24, 18, 8B, 44, 24, 10, 85, C0, 74, 3C, DE, E9, 85, D2, 79, 1E, D9, 1C, 24, 8B, 0C, 24, 81, F1, 00...
 
[+]

Entropy:
6.4167

Code size:
27.5 KB (28,160 bytes)

Scan update.exe - Powered by Reason Core Security