qyupdatetg.exe.del

ZYTools

潘文帅

Publisher:
宁波千影网络科技有限公司  (signed by 潘文帅)

Product:
ZYTools

Description:
应用程序

Version:
1.0.2.25

MD5:
d3a45a85bba4220f7ab7daccd5b374b2

SHA-1:
712922a9572e1b868502575afc1a15342bb8ff36

SHA-256:
077503df051ecc4617b7afe52c978fceaa26b8c6321ff7bfcd09739b4b8138e7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 11:43:30 PM UTC  (a few moments ago)

File size:
414.8 KB (424,784 bytes)

Product version:
1.0.2.25

Copyright:
Copyright (C) 2015 千影网络科技有限公司

Original file name:
ZYUpdate.exe

Language:
Chinese (Simplified, PRC)

Common path:
C:\users\{user}\appdata\roaming\qianying\application\qyupdatetg.exe.del

Digital Signature
Signed by:

Authority:
WoSign CA Limited

Valid from:
12/3/2015 2:11:33 PM

Valid to:
12/3/2016 2:11:33 PM

Subject:
CN=潘文帅, L=余姚市, S=浙江省, C=CN

Issuer:
CN=WoSign Class 2 Code Signing CA, O=WoSign CA Limited, C=CN

Serial number:
56BC9630A688F0B32D04CD40DCF3F822

File PE Metadata
Compilation timestamp:
3/21/2016 11:08:38 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:YLd04wnx6vE83wuLvzvwarrb5iTsxDJk4czER68i6kzBYENjYmv:mVeQvEAwWvvAQP3czWi6kmENjYmv

Entry address:
0x147A7

Entry point:
E8, 1C, A0, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 50, 08, 43, 00, 89, 0D, 4C, 08, 43, 00, 89, 15, 48, 08, 43, 00, 89, 1D, 44, 08, 43, 00, 89, 35, 40, 08, 43, 00, 89, 3D, 3C, 08, 43, 00, 66, 8C, 15, 68, 08, 43, 00, 66, 8C, 0D, 5C, 08, 43, 00, 66, 8C, 1D, 38, 08, 43, 00, 66, 8C, 05, 34, 08, 43, 00, 66, 8C, 25, 30, 08, 43, 00, 66, 8C, 2D, 2C, 08, 43, 00, 9C, 8F, 05, 60, 08, 43, 00, 8B, 45, 00, A3, 54, 08, 43, 00, 8B, 45, 04, A3, 58, 08, 43, 00, 8D, 45, 08, A3, 64, 08, 43...
 
[+]

Entropy:
7.3827

Code size:
154.5 KB (158,208 bytes)

Scan qyupdatetg.exe.del - Powered by Reason Core Security