android_root.exe

Kingo ROOT

Kingosoft Technology Ltd.

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from kingoroot.org.
Publisher:
Kingosoft Technology Ltd.

Product:
Kingo ROOT

Description:
Kingo ROOT Setup

Version:
1.4.0.2390

MD5:
adec5614bdae889a16d07d00adc821ca

SHA-1:
ba570be6936f66752009f4ef45f4d9d71bc6c89f

SHA-256:
67ff4ca640f6d2100006a0ec4a11d52cceb9fa225b86377f16c2dce8fa09240d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/6/2024 12:43:03 AM UTC  (today)

File size:
17.8 MB (18,612,928 bytes)

Product version:
1.4.0.2390

Copyright:
Copyright (c) 2013-2015 Kingosoft Technology Ltd.

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\downloads\android_root.exe

File PE Metadata
Compilation timestamp:
12/20/2011 11:16:50 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
393216:qv2YHM+0Z8NFDO/wqMKlBngr8Inm3rZKa4FFa1j:qO+MpOvDOY4vW8Im3rEc1j

Entry address:
0x16478

Entry point:
81, D2, C7, CE, BE, 1E, B0, B5, 86, F7, BA, 04, 6E, 84, 81, F2, 0F, AF, D2, B3, A1, 8D, 0D, 53, C0, 07, E2, F3, 8B, FF, 8D, 3D, D7, 57, 4C, 93, 33, DD, 20, F9, 43, 84, E4, 84, E3, 69, F2, 3F, C9, 67, 45, 51, 4E, 00, E9, 5F, B7, 69, 84, F1, 57, BB, 9F, 6E, 41, FD, 89, EB, 5D, BB, AE, B3, F7, E1, FE, CB, F2, 0F, BE, F2, 0F, BE, C9, 88, D3, 55, 87, C9, 89, CB, 88, D5, 5A, 3B, F6, 88, D3, 45, 33, CB, 52, B1, 44, 89, F3, 69, DB, 96, EC, 2F, 13, 58, 0A, DF, C6, C3, 51, FE, C6, 50, 68, A7, 69, 80, 00, 72, 08, 8D...
 
[+]

Code size:
84 KB (86,016 bytes)

The file android_root.exe has been seen being distributed by the following URL.

Scan android_root.exe - Powered by Reason Core Security