KeepVidProUpdateHelper.exe

WsUpdateHelper

Shenzhen Jia Xing Investment Co., Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘KeepVidProUpdateHelper.exe’.
Publisher:

Product:
WsUpdateHelper

Version:
1.0.0.0

MD5:
40a5f567a2204126c6063e9f3eae09ee

SHA-1:
767970b3b8708d8d4e4de1bfe3d06c2a7ff56349

SHA-256:
2d02f7d58d90a831acd1a08491bd7a7841ea9581a28f3341de1e1a8ce0aaf55f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
2/25/2025 8:13:17 PM UTC  (today)

File size:
32.7 KB (33,480 bytes)

Product version:
1.0.0.0

Copyright:
Copyright (C) 2017 Studio. All rights reserved.

Original file name:
KeepVidProUpdateHelper.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\keepvid\keepvid pro\keepvidproupdatehelper.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/16/2017 8:00:00 AM

Valid to:
3/15/2018 7:59:59 AM

Subject:
CN="Shenzhen Jia Xing Investment Co., Ltd.", OU=Information Security, O="Shenzhen Jia Xing Investment Co., Ltd.", L=Shenzhen, S=GuangDong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
52B9467713A7F2544F50324A098DB7F8

File PE Metadata
Compilation timestamp:
2/27/2017 1:55:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

Entry address:
0x514E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6770

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
12.5 KB (12,800 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
KeepVidProUpdateHelper.exe

Command:
C:\Program Files\keepvid\keepvid pro\keepvidproupdatehelper.exe


Scan KeepVidProUpdateHelper.exe - Powered by Reason Core Security