7z.exe

7-Zip

深圳市为爱普信息技术有限公司

Publisher:
Igor Pavlov  (signed by 深圳市为爱普信息技术有限公司)

Product:
7-Zip

Description:
7-Zip Console

Version:
9.20

MD5:
d969b282a60de5beafd0ce50c7db2f23

SHA-1:
9b784175811939477ae3b456fa83e88621729e7f

SHA-256:
9308c08b8a686be0de8a327b52a378c0a61779ed1b8a2daf5aaf774f9e25744a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 10:51:39 AM UTC  (today)

File size:
283.3 KB (290,128 bytes)

Product version:
9.20

Copyright:
Copyright (c) 1999-2010 Igor Pavlov

Original file name:
7z.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\i4tools\files\patchtools\7z-64\7z.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/20/2014 4:09:33 PM

Valid to:
6/20/2016 4:09:33 PM

Subject:
CN=深圳市为爱普信息技术有限公司, OU=IT Dept., O=深圳市为爱普信息技术有限公司, L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112135CF84C96DF6BD3F7769B2D3E242EE22

File PE Metadata
Compilation timestamp:
11/19/2010 12:08:29 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
3072:tpcAeriaGk2tLkZn0hZk/fbt+7wjCUBO+04kU7jejsMlG6J/31dAeOEtNYdHVOQV:3pON2tA423Kibf7jvMl9TJTYN

Entry address:
0x2DEC0

Entry point:
48, 83, EC, 58, 48, 89, 5C, 24, 70, 48, 89, 7C, 24, 78, 66, 81, 3D, 29, 21, FD, FF, 4D, 5A, 74, 08, 33, DB, 89, 5C, 24, 60, EB, 7C, 48, 63, 05, 54, 21, FD, FF, 48, 8D, 0D, 11, 21, FD, FF, 48, 03, C1, 81, 38, 50, 45, 00, 00, 74, 08, 33, DB, 89, 5C, 24, 60, EB, 5B, 0F, B7, 48, 18, 81, F9, 0B, 01, 00, 00, 74, 32, 81, F9, 0B, 02, 00, 00, 74, 08, 33, DB, 89, 5C, 24, 60, EB, 3F, 83, B8, 84, 00, 00, 00, 0E, 77, 08, 33, DB, 89, 5C, 24, 60, EB, 2E, 33, DB, 39, 98, F8, 00, 00, 00, 0F, 95, C3, 89, 5C, 24, 60, EB, 1D...
 
[+]

Entropy:
6.0629

Code size:
182 KB (186,368 bytes)

The file 7z.exe has been seen being distributed by the following URL.

Scan 7z.exe - Powered by Reason Core Security