pu.exe

Nanning Qiwang Computer Co., Ltd

Publisher:
Nanning Qiwang Computer Co., Ltd  (signed and verified)

Version:
6.3.4.0

MD5:
d7d4aba2a984a83ceff247fe90196114

SHA-1:
ac0b7580591f914bb4d49e289674abdcebadf1da

SHA-256:
3e5654c38ac3f350f9205143bd6a3609b44a7233e7ee6b0584378e50cba90320

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 4:45:40 AM UTC  (today)

File size:
3.3 MB (3,464,287 bytes)

Product version:
6.3.4.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\perfect uninstaller\pu.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
3/5/2015 5:00:00 AM

Valid to:
3/5/2016 4:59:59 AM

Subject:
CN="Nanning Qiwang Computer Co., Ltd", O="Nanning Qiwang Computer Co., Ltd", STREET="Room 6258, Kechuang Mansion", STREET=Keyuan Avenue, L=Nanning, S=Guangxi, PostalCode=530000, C=CN

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00B396E6C45638092B689F2E66CC740B6D

File PE Metadata
Compilation timestamp:
6/20/1992 3:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:f98Df1eIgqWD6J9AYVHt6GH9CO89p5Er/aH7LEGIJOi7UEJ1oYCT9HENugmxOOrM:fucIxdup52/+7wG47UELoYC2NCO7

Entry address:
0x10FA28

Entry point:
E9, A7, C9, FA, FF, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, 56, 57, B8, F0, F4, 50, 00, E8, BB, 6B, EF, FF, 33, C0, 55, 68, CD, FC, 50, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, A8, FC, 50, 00, 64, FF, 32, 64, 89, 22, 8D, 55, E8, A1, A0, 39, 51, 00, 8B, 00, E8, BC, 26, F7, FF, 8B, 45, E8, 8D, 55, EC, E8, 9D, 97, EF, FF, 8B, 55, EC, B8, F8, 52, 51, 00, E8, D4, 47, EF, FF, 8D, 55, E4, A1, A0, 39, 51, 00, 8B, 00, E8, 95, 26, F7, FF, 8B, 45, E4, E8, 09, 65, FD, FF, 68, DC, FC, 50, 00, 6A, 00, 6A, 00...
 
[+]

Entropy:
6.0291

Packer / compiler:
Xtreme-Protector v1.05

Code size:
1.1 MB (1,109,504 bytes)

Scan pu.exe - Powered by Reason Core Security