ims300_en.exe

IMS300

Hangzhou Shanze Technology Co.,Ltd

This is a setup program which is used to install the application. The file has been seen being downloaded from s3.cn-north-1.amazonaws.com.cn.
Publisher:
Intelligent Manage System  (signed by Hangzhou Shanze Technology Co.,Ltd)

Product:
IMS300

Description:
Property.ARPCOMMENTS

Version:
1.2.0

MD5:
57372d8d670ad0c48aea069999f9eb66

SHA-1:
dd095ee4628fd9e6f2f04084d6060124947b9631

SHA-256:
7f41f4a43a02a99aa40856b0227ec4e9d1d3726ce32ff7e4ce3932178d278e06

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/6/2024 3:38:29 AM UTC  (today)

File size:
40.7 MB (42,720,656 bytes)

Product version:
1.2.0

Copyright:
Copyright (C) 2016 Intelligent Manage System

Original file name:
IMS300.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\ims300_en.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
3/16/2016 7:00:00 AM

Valid to:
3/4/2019 6:59:59 AM

Subject:
CN="Hangzhou Shanze Technology Co.,Ltd", OU=IT, O="Hangzhou Shanze Technology Co.,Ltd", L=Hangzhou, S=Zhejiang, C=CN, SERIALNUMBER=91330106689083458L, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.1=Hangzhou, OID.1.3.6.1.4.1.311.60.2.1.2=Zhejiang, OID.1.3.6.1.4.1.311.60.2.1.3=CN

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA - G2, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
7B1328FA4305E9532D58EDEDEE246267

File PE Metadata
Compilation timestamp:
2/22/2016 6:15:50 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
786432:44A8NOuYGR2wC289/FfTrFuPwW4uFwmFKgAMa1oXG6IgJB9iIVl9:zA8ZjrC2g/JrFuw5ktdayTBV7

Entry address:
0x31F5F

Entry point:
E8, CC, 05, 00, 00, E9, 80, FE, FF, FF, 55, 8B, EC, F6, 45, 08, 01, 56, 8B, F1, C7, 06, B0, B5, 44, 00, 74, 0A, 6A, 0C, 56, E8, 5A, FB, FF, FF, 59, 59, 8B, C6, 5E, 5D, C2, 04, 00, CC, CC, CC, CC, 51, 8D, 4C, 24, 08, 2B, C8, 83, E1, 0F, 03, C1, 1B, C9, 0B, C1, 59, E9, FA, 06, 00, 00, 51, 8D, 4C, 24, 08, 2B, C8, 83, E1, 07, 03, C1, 1B, C9, 0B, C1, 59, E9, E4, 06, 00, 00, 55, 8B, EC, 81, EC, 24, 03, 00, 00, 53, 56, 6A, 17, E8, 40, 6F, 01, 00, 85, C0, 74, 05, 8B, 4D, 08, CD, 29, 33, F6, 8D, 85, DC, FC, FF, FF...
 
[+]

Entropy:
7.9949  (probably packed)

Code size:
292.5 KB (299,520 bytes)

The file ims300_en.exe has been seen being distributed by the following URL.

https://s3.cn-north-1.amazonaws.com.cn/cn-north-1-software--package/.../IMS300_EN.exe

Scan ims300_en.exe - Powered by Reason Core Security