updater.exe

Plandroid

DelftRed Simulation Technology

Publisher:
DelftRed  (signed by DelftRed Simulation Technology)

Product:
Plandroid

Description:
updater 4.3.2.1 © DelftRed, Inc, 2013

Version:
4.3.2.1

MD5:
24dfc798fdde1f2b908154b8d7611f7b

SHA-1:
a6ef68a6a557a2f5c99f9cfd02564ffe1c65e8c7

SHA-256:
938c2435c26c4a5365a1bcaf78156529160488f92b3fce5188061e7d71830145

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/12/2025 4:05:02 PM UTC  (today)

File size:
469.4 KB (480,632 bytes)

Product version:
4.3.2.1

Copyright:
Copyright (C) 2016 DelftRed

Original file name:
updater.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\delftred\plandroid\updater.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
4/28/2015 3:00:00 AM

Valid to:
4/28/2020 2:59:59 AM

Subject:
CN=DelftRed Simulation Technology, OU=DelftRed Simulation Technology, O=DelftRed Simulation Technology, STREET=101 Beulah Rd, L=Norwood, S=South Australia, PostalCode=5067, C=AU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
2474FDBC1441602CA5A0F838CADF9BB7

File PE Metadata
Compilation timestamp:
3/23/2016 12:41:32 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
12288:CVlQyM6JSeLu6Gf14tZ/w84kR4dKA7klyKWK:0iyFJS4uGtZ/D7R4dKEkly3K

Entry address:
0x2CC8F

Entry point:
E8, 4D, 05, 00, 00, E9, 80, FE, FF, FF, 55, 8B, EC, 6A, FF, 68, A7, 09, 44, 00, 64, A1, 00, 00, 00, 00, 50, 51, 53, 56, 57, A1, 0C, D0, 44, 00, 33, C5, 50, 8D, 45, F4, 64, A3, 00, 00, 00, 00, 89, 65, F0, FF, 75, 08, 83, 65, FC, 00, E8, 63, FD, FF, FF, 59, EB, 08, B8, D7, CC, 42, 00, C3, 33, C0, 8B, 4D, F4, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5E, 5B, 8B, E5, 5D, C3, 55, 8B, EC, 81, EC, 24, 03, 00, 00, 53, 56, 6A, 17, E8, ED, 30, 01, 00, 85, C0, 74, 05, 8B, 4D, 08, CD, 29, 33, F6, 8D, 85, DC, FC, FF, FF, 68...
 
[+]

Entropy:
6.9446

Code size:
255 KB (261,120 bytes)

Scan updater.exe - Powered by Reason Core Security