Updater.exe

EDraw Live Update

EDrawSoft.com

This is installed with EDraw Flowchart 3.
Publisher:
EDrawSoft  (signed by EDrawSoft.com)

Product:
EDraw Live Update

Version:
3.0.0.321

MD5:
16c2f2cb6b4a97d837394ccb789d794a

SHA-1:
329a51860994d457d421d4fc08c5a38f9966e1b3

SHA-256:
1f8492a77389cabf2a0a35cb96b281599f9b35fd3a444b6d00865d4e7162a5f2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/5/2024 2:14:22 AM UTC  (today)

File size:
513.5 KB (525,872 bytes)

Product version:
3.0.0.321

Copyright:
EDrawSoft. All rights reserved.

Original file name:
Updater.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\edraw flowchart\updater.exe

Digital Signature
Signed by:

Authority:
Wotone Communications, Inc.

Valid from:
4/12/2007 7:00:00 AM

Valid to:
4/12/2008 6:59:59 AM

Subject:
CN=EDrawSoft.com, OU=Domain Control Validated Only, O=EDrawSoft.com

Issuer:
CN=WoTrust Code Signing Authority, O="Wotone Communications, Inc.", C=US

Serial number:
6CDCE360A0D331BA59D8589E7D4D0A8E

File PE Metadata
Compilation timestamp:
11/8/2007 6:10:58 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:WnuKDmv0oXMzK6Vpepl2Pi1Z0WPrhsQgpSEVOpGtttEZf6RHtuoMTGuuScyq/NNz:FKCv0oXMhm1Z5sQgpSEVOpbtycc9

Entry address:
0x16219

Entry point:
E8, E2, 04, 00, 00, E9, 36, FD, FF, FF, 53, 8A, 5C, 24, 08, F6, C3, 02, 56, 8B, F1, 74, 24, 57, 68, C2, 68, 41, 00, 8D, 7E, FC, FF, 37, 6A, 0C, 56, E8, EC, 00, 00, 00, F6, C3, 01, 74, 07, 57, E8, EA, F6, FF, FF, 59, 8B, C7, 5F, EB, 13, E8, 69, 06, 00, 00, F6, C3, 01, 74, 07, 56, E8, D4, F6, FF, FF, 59, 8B, C6, 5E, 5B, C2, 04, 00, 6A, 10, 68, 28, E5, 41, 00, E8, E0, 03, 00, 00, 33, C0, 89, 45, E0, 89, 45, FC, 89, 45, E4, 8B, 45, E4, 3B, 45, 10, 7D, 13, 8B, 75, 08, 8B, CE, FF, 55, 14, 03, 75, 0C, 89, 75, 08...
 
[+]

Entropy:
7.1783

Code size:
100 KB (102,400 bytes)

The file Updater.exe has been discovered within the following program.

EDraw Flowchart 3  by EdrawSoft
www.edrawsoft.com/flowchart.php
About 7% of users remove it
 
Powered by Should I Remove It?

Scan Updater.exe - Powered by Reason Core Security