Updater.exe

Edraw Live Update

EDRAW LIMITED

This file is installed with the program Edraw Max 4.
Publisher:
EdrawSoft  (signed by EDRAW LIMITED)

Product:
Edraw Live Update

Version:
4.0.0.377

MD5:
93a3dc5a26f5a262d3918e9920c44246

SHA-1:
acd3b1436eaba8814166f98bd080de8951cd4f54

SHA-256:
8ef5beff1f658f7c1f65313de98530d89abec60e562783d88323f94aadf43c4a

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/19/2024 7:14:06 PM UTC  (today)

Scan engine
Detection
Engine version

Vba32 AntiVirus
suspected of Win32.BrokenEmbeddedSignature
3.12.8.12

File size:
514.1 KB (526,392 bytes)

Product version:
4.0.0.377

Copyright:
EdrawSoft. All rights reserved.

Original file name:
Updater.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\edraw max\updater.exe

Digital Signature
Signed by:

Authority:
WoSign, Inc.

Valid from:
4/14/2008 8:00:00 AM

Valid to:
4/15/2009 7:59:59 AM

Subject:
CN=EDRAW LIMITED, OU=Class 3 - for Microsoft Authenticode Signing, O=EDRAW LIMITED, L=hongkong, S=kongkong, C=CN

Issuer:
CN=WoSign Code Signing Authority, O="WoSign, Inc.", C=US

Serial number:
008DC2635DC1174D7A9DDB8E50BBC492BC

File PE Metadata
Compilation timestamp:
9/7/2008 10:18:11 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:unjr0oXWbtUO/UJ3nkGHpIeJ2bfxWOMtyR2:5UO/UJ3nkGHpIeJ2bfx/q

Entry address:
0x16229

Entry point:
E8, E2, 04, 00, 00, E9, 36, FD, FF, FF, 53, 8A, 5C, 24, 08, F6, C3, 02, 56, 8B, F1, 74, 24, 57, 68, D2, 68, 41, 00, 8D, 7E, FC, FF, 37, 6A, 0C, 56, E8, EC, 00, 00, 00, F6, C3, 01, 74, 07, 57, E8, EA, F6, FF, FF, 59, 8B, C7, 5F, EB, 13, E8, 69, 06, 00, 00, F6, C3, 01, 74, 07, 56, E8, D4, F6, FF, FF, 59, 8B, C6, 5E, 5B, C2, 04, 00, 6A, 10, 68, 18, E5, 41, 00, E8, E0, 03, 00, 00, 33, C0, 89, 45, E0, 89, 45, FC, 89, 45, E4, 8B, 45, E4, 3B, 45, 10, 7D, 13, 8B, 75, 08, 8B, CE, FF, 55, 14, 03, 75, 0C, 89, 75, 08...
 
[+]

Entropy:
7.1804

Code size:
100 KB (102,400 bytes)

The file Updater.exe has been discovered within the following program.

Edraw Max 4  by EdrawSoft
Publisher's description - “Vector-based diagramming software with lots of examples and templates.”
www.edrawsoft.com
9% remove it
 
Powered by Should I Remove It?

Scan Updater.exe - Powered by Reason Core Security