kuaizipsetup_jiuzhuan_001.exe

kzupdate_agency应用程序

Shanda Games

Publisher:
Shanda Games  (signed and verified)

Product:
kzupdate_agency应用程序

Description:
kzupdate_agency

Version:
1, 0, 3, 0

MD5:
678fcfae2f38b766ba5f702a3a6df3e8

SHA-1:
5d2ca986d1638e857482f05d9486db56a92cbdab

SHA-256:
382c2329b8951c4dd7b49376f4090c70b4b4f88890e1eeffa57abb8f3f540982

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 4:37:31 AM UTC  (today)

File size:
620.8 KB (635,704 bytes)

Product version:
1, 0, 3, 0

Copyright:
Copyright (C) 2015

Original file name:
kzupdate_agency.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, PRC)

Common path:
C:\users\{user}\appdata\roaming\kuaizip\kuaizipsetup_jiuzhuan_001.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
10/29/2013 7:00:00 AM

Valid to:
12/28/2016 6:59:59 AM

Subject:
CN=Shanda Games, OU=Security Labs, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Shanda Games, L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
30D3C167265B520CB87F25844F95CB04

File PE Metadata
Compilation timestamp:
4/19/2016 3:35:49 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x4E8CC

Entry point:
E8, 1B, C3, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 83, 65, FC, 00, 56, 8D, 45, FC, 50, FF, 75, 0C, FF, 75, 08, E8, 92, C3, 00, 00, 8B, F0, 83, C4, 0C, 85, F6, 75, 18, 39, 45, FC, 74, 13, E8, 9C, 06, 00, 00, 85, C0, 74, 0A, E8, 93, 06, 00, 00, 8B, 4D, FC, 89, 08, 8B, C6, 5E, C9, C3, 6A, 10, 68, 30, 17, 48, 00, E8, D6, C0, 00, 00, 8B, 5D, 08, 85, DB, 75, 0E, FF, 75, 0C, E8, DD, 02, 00, 00, 59, E9, CC, 01, 00, 00, 8B, 75, 0C, 85, F6, 75, 0C, 53, E8, ED, 01, 00, 00, 59, E9, B7, 01, 00, 00, 83, 3D...
 
[+]

Entropy:
6.0630

Code size:
455 KB (465,920 bytes)

Scan kuaizipsetup_jiuzhuan_001.exe - Powered by Reason Core Security