Pangu.exe

Lingbao Qinling Electronics Co., Ltd.

Publisher:
Lingbao Qinling Electronics Co., Ltd.  (signed and verified)

Version:
1, 2, 1, 1

MD5:
002e4793025b089a5fa0506b1b28e510

SHA-1:
bfaca192aef7af8ca30646bcfcf599e02c3e6b4e

SHA-256:
356a97f599cc09b01a258c6dde47918b0df5a72b6cf05ed806c42912fe849e8c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/6/2024 2:55:12 PM UTC  (today)

File size:
34.1 MB (35,796,928 bytes)

Product version:
1, 2, 1, 1

Copyright:
Copyright (C) PanguTeam

Original file name:
Pangu.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\autoplay\docs\pangu.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/22/2014 7:00:00 PM

Valid to:
6/23/2015 6:59:59 PM

Subject:
CN="Lingbao Qinling Electronics Co., Ltd.", OU=IS, O="Lingbao Qinling Electronics Co., Ltd.", L=Lingbao, S=Henan, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
37EDA0F1C795F86E6AB6E496B415F64B

File PE Metadata
Compilation timestamp:
8/11/2014 3:29:07 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x411112

Entry point:
E9, CC, 55, 00, 00, BA, 45, 95, DB, 7E, 30, 83, BA, D8, C6, A0, 68, 84, 96, 3A, E0, 53, BA, DD, 2A, D3, 63, B4, DF, 2C, 98, D8, 21, 28, B4, 75, E6, 25, 14, CC, 96, 61, D6, A5, C1, 95, C0, 3E, ED, 57, 01, 05, D1, D7, 46, 9B, FB, 9B, 5B, 33, 4F, 1C, BF, 04, E9, B0, 9C, C3, 1B, 6D, 99, DF, 74, F5, C3, 7D, 6C, 62, F9, 27, A7, 9B, 89, 23, 15, 0C, 86, 8E, B0, 5C, F8, 16, 82, 3D, 45, CC, 64, 6E, 9E, 0E, 9D, 1D, 2A, 18, 41, E5, CB, C9, CB, 65, 73, DD, FB, 2D, B3, 66, FE, C0, 35, 51, 90, 2C, 9D, E1, 9C, A4, 4B, 2E...
 
[+]

Entropy:
7.9738

Packer / compiler:
Xtreme-Protector v1.05

Code size:
2 MB (2,128,384 bytes)

Scan Pangu.exe - Powered by Reason Core Security