Wizard.exe

搜狗拼音输入法

Sogou.com

Publisher:
Sogou.com Inc.  (signed by Sogou.com)

Product:
搜狗拼音输入法

Description:
搜狗拼音输入法 设置向导

Version:
4.0.0.1981

MD5:
8bc977c9789fd1ca3a7059fb8e802c1a

SHA-1:
461ae4190cb3c31ce573f4f61d23f03cc3e42ee2

SHA-256:
f6e983a795242fccf19925b966e12e95efb8af371720b45ce0b69beea00fa4d6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 6:46:46 PM UTC  (today)

File size:
1.1 MB (1,144,120 bytes)

Product version:
4.0.0.1981

Copyright:
© 2008 Sogou.com Inc. All rights reserved.

Original file name:
Wizard.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, PRC)

Common path:
C:\Program Files\sogouinput\4.0.0.1981\wizard.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
7/11/2008 5:00:00 AM

Valid to:
7/12/2009 4:59:59 AM

Subject:
CN=Sogou.com, OU=R&D Center, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Sogou.com, L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
67F633B26472F3367C84CEA1B346C25B

File PE Metadata
Compilation timestamp:
1/4/2009 11:44:32 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:KtenGiKEgo7m2Z6+MlsS9FniHTCcjDUiR3GjNcGU4:KtenX7NGscFmTkiR3sNcG5

Entry address:
0x8E799

Entry point:
E8, B8, 6A, 00, 00, E9, 17, FE, FF, FF, 8B, 44, 24, 04, 8B, D0, 66, 8B, 08, 40, 40, 66, 85, C9, 75, F6, 66, 8B, 4C, 24, 08, 48, 48, 3B, C2, 74, 05, 66, 39, 08, 75, F5, 66, 8B, 10, 66, 2B, D1, 66, F7, DA, 1B, D2, F7, D2, 23, C2, C3, 55, 8B, EC, 53, 56, 8B, 75, 08, 57, 33, FF, 39, 7D, 14, 75, 10, 3B, F7, 75, 10, 39, 7D, 0C, 75, 12, 33, C0, 5F, 5E, 5B, 5D, C3, 3B, F7, 74, 07, 8B, 5D, 0C, 3B, DF, 77, 1B, E8, 22, 6B, 00, 00, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, 29, 1D, 00, 00, 83, C4, 14, 8B, C6, EB, D5...
 
[+]

Entropy:
6.8820

Code size:
744 KB (761,856 bytes)

Scan Wizard.exe - Powered by Reason Core Security