newksbao.exe

Liuzhou Yingteng Software Co.,Ltd.

Publisher:
Liuzhou Yingteng Software Co.,Ltd.  (signed and verified)

Version:
1.0.0.29

MD5:
67be4c4817951702a023e2e00c880775

SHA-1:
cc873e9343a49c5e203b95c425b40d27d743fcfa

SHA-256:
8363b391fc5df151f0a97b4c22dcb6a9e789968c2b19ad3da0776dd155a42099

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/15/2025 8:28:13 AM UTC  (today)

File size:
1.3 MB (1,395,376 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
Symantec Corporation

Valid from:
11/16/2015 8:00:00 AM

Valid to:
12/16/2016 7:59:59 AM

Subject:
CN="Liuzhou Yingteng Software Co.,Ltd.", OU=IT dept., O="Liuzhou Yingteng Software Co.,Ltd.", L=Liuzhou, S=Guangxi, C=CN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
62B09DA8C51ADBA10F4403DBD4F522E2

File PE Metadata
Compilation timestamp:
6/17/2016 4:05:10 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:npz+ea9hFBgJb4Ik8+SQmtBFZaUWmQkZM+wfx1gQrSu8o2hUYG:I9hDMRZMBZ1zrMo2M

Entry address:
0x10DFD0

Entry point:
55, 8B, EC, B9, 04, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, B8, 90, C7, 50, 00, E8, A2, 95, EF, FF, 33, C0, 55, 68, FB, E0, 50, 00, 64, FF, 30, 64, 89, 20, A1, 14, 4F, 51, 00, C6, 00, 00, E8, 3B, 41, FB, FF, 84, C0, 0F, 84, BE, 00, 00, 00, 8D, 55, E8, 33, C0, E8, FD, 53, EF, FF, 8B, 45, E8, 8D, 55, EC, E8, 16, C5, EF, FF, 8D, 45, EC, BA, 10, E1, 50, 00, E8, 8D, 75, EF, FF, 8B, 45, EC, E8, 1D, C3, EF, FF, 84, C0, 74, 3A, 8D, 55, DC, 33, C0, E8, CF, 53, EF, FF, 8B, 45, DC, 8D, 55, E0, E8, E8, C4, EF, FF...
 
[+]

Entropy:
6.7679

Developed / compiled with:
Microsoft Visual C++

Code size:
1.1 MB (1,101,824 bytes)

Scan newksbao.exe - Powered by Reason Core Security