nosemayupdate.exe

Nosemay

Shanghai Yuntong Technology Co., Ltd.

It runs as a scheduled task under the Windows Task Scheduler named NosemayUpdateTaskMachineCore triggered by a time event.
Publisher:
Shanghai Yuntong Technology Co., Ltd.  (signed and verified)

Product:
Nosemay

Version:
1.0.0.1

MD5:
be0ac8d05ae1e0cf8f3f4f3fee2fbe21

SHA-1:
8109eb1210091e12822e7f2ef457868b660b1ce5

SHA-256:
b515c3c719841e38ec4bd2c466fa84919a707d0e687175956ecff0250af65769

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 10:25:51 PM UTC  (today)

File size:
521.4 KB (533,896 bytes)

Product version:
50.27.2661.78

Copyright:
Copyright (C) 2016 Nosemay Authors

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\nosemay\update\nosemayupdate.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
5/6/2016 5:30:00 AM

Valid to:
2/25/2017 5:29:59 AM

Subject:
CN="Shanghai Yuntong Technology Co., Ltd.", O="Shanghai Yuntong Technology Co., Ltd.", L=Beijing, S=Beijing, C=CN

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
1A3EAC6C38C71B1E4CE1FA41CFA093E5

File PE Metadata
Compilation timestamp:
5/30/2016 2:06:38 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
6144:LvtPSUb40RaT7uSjg5eqNxuXKIkl9VJfq3dS0Koo4ip57wfLPcJypmInrJm:zthET7elNvl1gdTKo9iP7w1m

Entry address:
0x431FD

Entry point:
8F, 8F, 70, 00, 00, 8F, E7, C7, 8A, 96, 96, 43, BB, 6A, 33, 00, E2, 2B, 93, 5D, FC, 64, 00, 00, 00, 00, 2C, 36, 36, 38, 3C, B2, 90, 34, 38, 94, A4, 69, 11, 96, 5C, 00, 00, 00, 00, E4, 2D, 42, 6B, 12, 11, 4D, 65, 35, 31, 6E, FC, 41, E2, 8E, C6, 85, B4, 2E, 00, 55, A2, 69, 8A, 1C, 95, A1, 22, C5, 8A, 96, 96, 99, EA, 7C, 81, 0D, CA, 00, 00, 00, 00, 9B, AA, 36, 03, C6, 40, 00, 00, 00, 00, B4, 31, 4D, 65, 4D, 03, 1D, 79, 3A, 3F, 31, EE, 11, FE, 81, C8, DA, A6, 7E, 00, 5A, AC, 36, EE, 5C, 85, 96, 1C, 9A, A0, 7C...
 
[+]

Entropy:
6.9221

Code size:
398.5 KB (408,064 bytes)

Scheduled Task
Task name:
NosemayUpdateTaskMachineCore

Trigger:
Time


Scan nosemayupdate.exe - Powered by Reason Core Security