ksearch.exe

Kingsoft Internet Security

Beijing Kingsoft Security software Co.,Ltd

Publisher:
Kingsoft Corporation  (signed by Beijing Kingsoft Security software Co.,Ltd)

Product:
Kingsoft Internet Security

Description:
Kingsoft Search

Version:
2014,12,26,12011

MD5:
5124fac77d5d779e75bb315f0969cfd4

SHA-1:
88ff585fb12a459a0110295e4c5b9c3ec55310f4

SHA-256:
8c70d4cfb2f8807da3995f795aa41d71faf1e66054e78c7d19c1d4f39e9779d0

Scanner detections:
5 / 68

Status:
Inconclusive  (probably just false positive detections)

Analysis date:
12/25/2024 5:37:56 PM UTC  (today)

Scan engine
Detection
Engine version

Bitdefender
Gen:Variant.Kazy.523830
1.0.20.1815

Emsisoft Anti-Malware
Gen:Variant.Kazy.523830
9.0.0.4668

F-Secure
Gen:Variant.Kazy.523830
5.13.68

G Data
Gen:Variant.Kazy.523830
14.12.24

MicroWorld eScan
Gen:Variant.Kazy.523830
15.0.0.1089

File size:
1.2 MB (1,289,264 bytes)

Product version:
9,1,212710,12011

Copyright:
Copyright (C) 1998-2014 Kingsoft Corporation

Original file name:
ksearch.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\ProgramData\application data\kingsoft\ksearch\ksearch.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
12/24/2014 8:00:00 AM

Valid to:
1/23/2018 7:59:59 AM

Subject:
CN="Beijing Kingsoft Security software Co.,Ltd", OU=IT, O="Beijing Kingsoft Security software Co.,Ltd", L=beijing, S=beijing, C=CN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
39A0156D17E10ECA0C1486FE5F0E7DA1

File PE Metadata
Compilation timestamp:
12/26/2014 10:41:43 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:bzzCbwVSRQL923zFbirFiHmsHgAeQKU3SM26:3zCbwU9FiryHgArKU3X

Entry address:
0xA8342

Entry point:
E8, ED, 03, 00, 00, E9, 36, FD, FF, FF, FF, 25, A0, C5, 4C, 00, CC, CC, 68, AD, 83, 4A, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 28, 30, 4F, 00, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, FF, 74, 24, 10, FF, 74, 24, 10, FF, 74, 24, 10, FF, 74, 24, 10, 68, 13, 7E, 4A, 00...
 
[+]

Entropy:
6.4998

Code size:
811 KB (830,464 bytes)

Scan ksearch.exe - Powered by Reason Core Security