updater.exe

SecuTech Solution Inc.

Publisher:
SecuTech Solution Inc.  (signed and verified)

MD5:
706d4ea6ad5b53cf1cacb5af3c8c6bff

SHA-1:
b60b0bb2b0a72d74cffbd1400c1a65c1bf656232

SHA-256:
b423499f2d2fa133ffe5b8d5c0cf701a402315fe9e99fdacf8d7e2d67f631a64

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2017 7:32:09 PM UTC  (today)

File size:
6.9 MB (7,283,320 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\tmppath\updater.exe

Digital Signature
Authority:
WoSign, Inc.

Valid from:
10/20/2010 3:30:00 AM

Valid to:
10/20/2013 3:29:59 AM

Subject:
CN=SecuTech Solution Inc., OU=WoSign Class 3 Code Signing, O=SecuTech Solution Inc., L=Montreal, S=Quebec, C=CA

Issuer:
CN=WoSign Code Signing Authority, O="WoSign, Inc.", C=US

Serial number:
70151D2D2D036C54F30F260A4CD66A16

File PE Metadata
Compilation timestamp:
12/16/2011 5:28:24 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:0FZH/5WUwqwiz0jXpvPUDxUM+tzOj5Hwq6/Opr8Jsv6tWKFdu9Cd8exyP4zgW/:0Ffwq/GEDjlHwqGJsv6tWKFdu9CV

Entry address:
0x4785FE

Entry point:
E8, 77, C4, 00, 00, E9, 78, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, 83, 3D, 18, 34, AB, 00, 00, 74, 2D, 55, 8B, EC, 83, EC, 08, 83, E4, F8, DD, 1C, 24, F2, 0F, 2C, 04, 24, C9, C3, 83, 3D, 18, 34, AB, 00, 00, 74, 11, 83, EC, 04, D9, 3C, 24, 58, 66, 83, E0, 7F, 66, 83, F8, 7F, 74, D3, 55, 8B, EC, 83, EC, 20, 83, E4, F0, D9, C0, D9, 54, 24, 18, DF, 7C, 24, 10, DF, 6C, 24, 10, 8B, 54, 24, 18, 8B, 44, 24, 10, 85, C0, 74, 3C, DE, E9, 85, D2, 79, 1E, D9, 1C, 24, 8B, 0C, 24, 81, F1, 00, 00, 00, 80, 81, C1, FF...
 
[+]

Entropy:
6.6105

Code size:
4.9 MB (5,152,768 bytes)

Scan updater.exe - Powered by Reason Core Security