AutoStart.EXE

AutoStart 应用程序

中国电信股份有限公司

Publisher:
中国电信股份有限公司  (signed and verified)

Product:
AutoStart 应用程序

Description:
AutoStart Microsoft 基础类应用程序

Version:
1, 0, 0, 1

MD5:
e9c208c5ccc8d2184a903d2c9c370795

SHA-1:
64bd482e098e7261f3c64ea942447e45626dfee0

SHA-256:
d835942e98e2fa7518e2555ced20121fa47386fc9f24e6ede0f27a0a73d90f2c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/14/2024 4:18:17 PM UTC  (today)

File size:
55.7 KB (57,072 bytes)

Product version:
1, 0, 0, 1

Copyright:
版权所有 (C) 2010

Original file name:
AutoStart.EXE

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\chinatelecom c+w\autostart.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/16/2013 8:00:00 AM

Valid to:
1/16/2015 7:59:59 AM

Subject:
CN=中国电信股份有限公司, OU=增值业务运营中心, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=中国电信股份有限公司, L=beijing, S=beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2B1F7CDE1EC52DE247BD32F7BFA59A97

File PE Metadata
Compilation timestamp:
10/27/2010 2:35:26 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
384:Wu1jU+OeZMAeT6jXEoVzFZyYQnmL202GRFyVsCx86Kw8jbZq4eM2H80w:fjl1w6/zyXDGRKsCxCHZQH83

Entry address:
0x1298

Entry point:
55, 8B, EC, 6A, FF, 68, F0, 21, 40, 00, 68, 20, 14, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, D8, 20, 40, 00, 59, 83, 0D, 24, 31, 40, 00, FF, 83, 0D, 28, 31, 40, 00, FF, FF, 15, D4, 20, 40, 00, 8B, 0D, 18, 31, 40, 00, 89, 08, FF, 15, D0, 20, 40, 00, 8B, 0D, 14, 31, 40, 00, 89, 08, A1, CC, 20, 40, 00, 8B, 00, A3, 20, 31, 40, 00, E8, 16, 01, 00, 00, 39, 1D, 38, 30, 40, 00, 75, 0C, 68, 1A, 14, 40, 00, FF, 15, C8, 20...
 
[+]

Entropy:
3.9334

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
4 KB (4,096 bytes)

Scan AutoStart.EXE - Powered by Reason Core Security