PalmInputStartUp.exe

手心输入法

北京酷睿蒙数字科技有限公司

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘PalmInputStartUp’.
Publisher:

Product:
手心输入法

Description:
手心输入法 启动程序

Version:
2.7.0.1686

MD5:
278a91382e76f82ffaeaf09d4f920374

SHA-1:
24d47b8ee1b5d204ac252f6b53ff9e829eff6285

SHA-256:
2b72d00eaca33706e709b05dc4ea46a0772a5ddf39bff28676f5d6f5cdc4664d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 11:58:44 AM UTC  (today)

File size:
110 KB (112,592 bytes)

Product version:
2.7.0.1686

Copyright:
(C) xinshuru.com All Rights Reserved.

Original file name:
PalmInputStartUp.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
WoSign CA Limited

Valid from:
2/22/2016 2:40:05 PM

Valid to:
3/22/2018 2:40:05 PM

Subject:
CN=北京酷睿蒙数字科技有限公司, O=北京酷睿蒙数字科技有限公司, L=北京市, S=北京市, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign CA Limited, C=CN

Serial number:
684A4BEDF03283EE53282B04ABC26E85

File PE Metadata
Compilation timestamp:
1/6/2017 11:11:59 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x4BF9

Entry point:
E8, 94, 43, 00, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A1, 50, 40, 41, 00, 33, C5, 89, 45, FC, 83, 7D, 08, FF, 57, 74, 09, FF, 75, 08, E8, DB, 1D, 00, 00, 59, 83, A5, E0, FC, FF, FF, 00, 6A, 4C, 8D, 85, E4, FC, FF, FF, 6A, 00, 50, E8, 33, 1D, 00, 00, 8D, 85, E0, FC, FF, FF, 89, 85, D8, FC, FF, FF, 8D, 85, 30, FD, FF, FF, 83, C4, 0C, 89, 85, DC, FC, FF, FF, 89, 85, E0, FD, FF, FF, 89, 8D, DC, FD, FF, FF, 89, 95, D8, FD, FF, FF, 89, 9D, D4, FD, FF, FF, 89, B5, D0, FD, FF, FF, 89, BD, CC...
 
[+]

Entropy:
5.8831

Code size:
43.5 KB (44,544 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
PalmInputStartUp

Command:
"C:\palminput\2.7.0.1686\palminputstartup.exe"


Scan PalmInputStartUp.exe - Powered by Reason Core Security