kshpex.exe

Kingsoft Internet Security

Beijing Kingsoft Security software Co.,Ltd

Publisher:
Kingsoft Corporation  (signed by Beijing Kingsoft Security software Co.,Ltd)

Product:
Kingsoft Internet Security

Description:
Kingsoft Shp

Version:
2016,01,08,15119

MD5:
168e7b3f1cfa306eb4c7d8c77a1ec2a6

SHA-1:
228da10b2978c3e300d9bc4c0d4828d8a6623219

SHA-256:
42ebec29ea5011346ae4ba66fcd39723eabc6092974dea6e89cb08462b111a23

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 6:31:49 PM UTC  (today)

File size:
630.4 KB (645,488 bytes)

Product version:
9,3,264542,15119

Copyright:
Copyright (C) 1998-2016 Kingsoft Corporation

Original file name:
kshpex.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\mydrivers\drivergenius2012\kshpex.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/29/2014 8:00:00 AM

Valid to:
1/29/2016 7:59:59 AM

Subject:
CN="Beijing Kingsoft Security software Co.,Ltd", OU=IT, O="Beijing Kingsoft Security software Co.,Ltd", L=beijing, S=beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7A1FE7676A4849DAEE2BFFC4A4FF4BD3

File PE Metadata
Compilation timestamp:
1/8/2016 2:47:04 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x50F3B

Entry point:
E8, 29, D7, 00, 00, E9, 17, FE, FF, FF, B8, B8, 30, 48, 00, C3, A1, 80, 7A, 48, 00, 85, C0, 56, 6A, 14, 5E, 75, 07, B8, 00, 02, 00, 00, EB, 06, 3B, C6, 7D, 07, 8B, C6, A3, 80, 7A, 48, 00, 6A, 04, 50, E8, B4, 52, 00, 00, 85, C0, 59, 59, A3, 60, 6A, 48, 00, 75, 1E, 6A, 04, 56, 89, 35, 80, 7A, 48, 00, E8, 9B, 52, 00, 00, 85, C0, 59, 59, A3, 60, 6A, 48, 00, 75, 05, 6A, 1A, 58, 5E, C3, 33, D2, B9, B8, 30, 48, 00, EB, 05, A1, 60, 6A, 48, 00, 89, 0C, 02, 83, C1, 20, 83, C2, 04, 81, F9, 38, 33, 48, 00, 7C, EA, 6A...
 
[+]

Entropy:
6.5670

Code size:
424 KB (434,176 bytes)

Scan kshpex.exe - Powered by Reason Core Security