Juzi.exe

桔子浏览器

Orange Software Technology Co.Ltd

The application Juzi.exe by Orange Software Technology Co.Ltd has been detected as a potentially unwanted program by 2 anti-malware scanners.
Publisher:
123Juzi.COM  (signed by Orange Software Technology Co.Ltd)

Product:
桔子浏览器

Version:
1.0.9.1

MD5:
6f5ec2f0127135d50bd4a844ad08404b

SHA-1:
ebe25258f3b2bbe41d64acbf568cdfb85b0449ef

SHA-256:
f67015f5183fa6d17312101336ef4fb1207c9d53aae915c446bc7f4380869d9f

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
12/28/2024 5:07:57 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Hao123.H potentially unwanted application
8.0.319.0

Reason Heuristics
PUP.Hao123 (M)
16.7.16.23

File size:
3.3 MB (3,511,824 bytes)

Product version:
1.0.9.1

Copyright:
Copyright @ 2014 123Juzi.COM. All Rights Reserved.

Original file name:
Juzi.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\juzibrowser\juzi.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/6/2013 8:00:00 AM

Valid to:
12/7/2014 7:59:59 AM

Subject:
CN=Orange Software Technology Co.Ltd, OU=Dept. Authentication Service, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Orange Software Technology Co.Ltd, L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4A33789508A38462F01C319F0505D75C

File PE Metadata
Compilation timestamp:
9/3/2014 7:42:28 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:yGnAANkc236L0L28vCEoRDxSHX6MMi6AKSdNEe:HnZkc220L28vC1w6LhAKSjEe

Entry address:
0x1412C7

Entry point:
E8, E6, 0A, 01, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 0C, A1, 40, 0C, 5C, 00, 33, C5, 89, 45, FC, 56, 33, F6, 57, 3B, DE, 75, 1E, E8, 77, 32, 00, 00, 6A, 16, 5F, 56, 56, 56, 56, 56, 89, 38, E8, 4B, B0, FF, FF, 83, C4, 14, 8B, C7, E9, 47, 01, 00, 00, FF, 75, 08, 53, E8, FD, B1, FF, FF, 59, 59, 3B, 45, 08, 72, 07, 33, C0, 66, 89, 03, EB, CB, 8B, 55, 0C, 8B, 02, 8B, 48, 14, 3B, CE, 75, 2A, 8B, C3, 66, 39, 33, 74, 1C, 0F, B7, 08, 66, 83, F9, 61, 72, 0C, 66, 83, F9, 7A, 77, 06, 83, C1, E0, 66, 89...
 
[+]

Entropy:
6.8657

Code size:
1.4 MB (1,472,000 bytes)

Shell Open Command
Open type:
htmlfile

Command:
"C:\Program Files\juzibrowser\juzi.exe" "%1"


Remove Juzi.exe - Powered by Reason Core Security