upforthis.exe

upforthis

Beijing DongDa ZhengBao Hi-Tech Co.,Ltd

Publisher:

Product:
upforthis

Version:
1.0.0.0

MD5:
4c2969fb54c6462c05f4f6eb216f1aa3

SHA-1:
82603580a738511b975be24f995c6fd12a536ed8

SHA-256:
018a035db162d37ceb23a4c1b6a64af99982ad3b70e2db9ffe0d825f89440839

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 11:07:40 PM UTC  (a few moments ago)

File size:
50.2 KB (51,400 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2013

Original file name:
upforthis.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\cdellawlib\upforthis.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/17/2011 8:00:00 AM

Valid to:
7/17/2014 7:59:59 AM

Subject:
CN="Beijing DongDa ZhengBao Hi-Tech Co.,Ltd", OU=IT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Beijing DongDa ZhengBao Hi-Tech Co.,Ltd", L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6945B3FC53F6703510AAF510F372CA8F

File PE Metadata
Compilation timestamp:
4/10/2014 4:33:39 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:aXXMO3shj4ymXkNbJxThBJMO3shj4ymXkNROM:oFyskNX/FyskNRX

Entry address:
0x8B6E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.9111

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
27 KB (27,648 bytes)

Scan upforthis.exe - Powered by Reason Core Security