baidupinyin.exe

百度中文输入法

Baidu (China) Co., Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘BaiduPinyin’.
Publisher:
Baidu, Inc.  (signed by Baidu (China) Co., Ltd.)

Product:
百度中文输入法

Description:
百度中文输入法服务程序

Version:
2.11.2.75

MD5:
c48f121dea08f0fedd937529fcf2899f

SHA-1:
9d634a9af2b79ee43a95fc09c7574d3a8bc97fde

SHA-256:
55d6b20da97658cb88794597e1bf251ac281ca19afa3a2369440c8cdec38c299

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 12:42:06 PM UTC  (today)

File size:
2.3 MB (2,440,464 bytes)

Product version:
2.11.2.75

Copyright:
Copyright (c) 2010 - 2012 Baidu, Inc. All Rights Reserved.

Original file name:
baidupinyin.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\baidu\baidupinyin\2.11.2.75\baidupinyin.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
2/22/2012 5:18:27 PM

Valid to:
2/22/2015 5:18:27 PM

Subject:
CN="Baidu (China) Co., Ltd.", O="Baidu (China) Co., Ltd.", L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121DF7675AAA08D1B49A83A480F14855D24

File PE Metadata
Compilation timestamp:
9/2/2014 3:07:36 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x171387

Entry point:
E8, 45, 05, 00, 00, E9, 4C, FE, FF, FF, 55, 8B, EC, 5D, E9, 3A, 02, 00, 00, FF, 25, 44, 26, 5A, 00, FF, 25, 48, 26, 5A, 00, 55, 8B, EC, FF, 15, F0, 22, 5A, 00, 6A, 01, A3, 8C, 67, 62, 00, E8, 23, 06, 00, 00, FF, 75, 08, E8, 21, 06, 00, 00, 83, 3D, 8C, 67, 62, 00, 00, 59, 59, 75, 08, 6A, 01, E8, 09, 06, 00, 00, 59, 68, 09, 04, 00, C0, E8, 0A, 06, 00, 00, 59, 5D, C3, 55, 8B, EC, 81, EC, 24, 03, 00, 00, 6A, 17, E8, 65, 06, 00, 00, 85, C0, 74, 05, 6A, 02, 59, CD, 29, A3, 70, 65, 62, 00, 89, 0D, 6C, 65, 62, 00...
 
[+]

Entropy:
6.2829

Code size:
1.6 MB (1,705,472 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
BaiduPinyin

Command:
"C:\Program Files\baidu\baidupinyin\2.11.2.75\baidupinyin.exe" --autorun


Scan baidupinyin.exe - Powered by Reason Core Security