xqatom.exe

Shanghai Bo Yi Information Technology Co. Ltd.

Publisher:

MD5:
c5e07f4b0d85e67aba64c6ebc4fb8d3d

SHA-1:
d258ef56883b8bf8c133c4302fd2cbec5ce76d7c

SHA-256:
586ef703183af0fb9e83fb5b3cf03a5e37e2156feda2e226e771eddd9b0c6b72

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:33:37 PM UTC  (today)

File size:
1.7 MB (1,827,176 bytes)

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/15/2012 7:00:00 AM

Valid to:
3/20/2015 6:59:59 AM

Subject:
CN=Shanghai Bo Yi Information Technology Co. Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Shanghai Bo Yi Information Technology Co. Ltd., L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3BDC743ADE918E2EC09F3A9FDD929776

File PE Metadata
Compilation timestamp:
5/25/2012 3:04:29 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
24576:pqbJO4ytsw5weiNJkq1dtIylRHhTZAx22lMjkChkKcmvJCmKxj7Dbd1WUBVRlG1H:pqyoNJLGSHAx2HJNF6l4e2iZhkXAV33W

Entry address:
0xB4B951

Entry point:
E8, 1C, 00, 00, 00, 53, 61, 66, 65, 6E, 67, 69, 6E, 65, 20, 4C, 69, 63, 65, 6E, 73, 6F, 72, 20, 76, 32, 2E, 31, 2E, 36, 2E, 30, 00, 9C, E8, AE, FF, FF, FF, 8B, 04, 24, B0, 32, B8, 88, 8C, 6E, 74, 52, 66, 0F, BC, C6, EB, 59, 4F, D6, 41, C3, 7A, 66, FF, 74, 24, 17, 66, 8F, 44, 24, 11, 52, 66, 8F, 44, 24, 19, 89, 44, 24, 04, 8A, 04, 24, EB, D1, 0F, B3, E0, 8B, F8, D1, D7, 0F, 94, C0, 8D, 3C, 39, F5, E9, 80, 00, 00, 00, 55, C4, 77, 5E, 66, 8B, 04, 24, 8D, 04, BD, 00, 00, 00, 00, 0F, 9E, C4, 8D, 64, 24, 03, 89...
 
[+]

Entropy:
7.9518  (probably packed)

Scan xqatom.exe - Powered by Reason Core Security