sogoulycq.exe

蓝月传奇安装包

上海欣烁网络科技有限公司

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer.
Publisher:
上海欣烁网络科技有限公司  (signed and verified)

Product:
蓝月传奇安装包

Version:
1.0.0.1

MD5:

SHA-1:
945b30fc8a48c253a0bf5cfdd61e68e1e7b76657

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 1:50:47 PM UTC  (today)

File size:
2.4 MB (2,483,464 bytes)

Product version:
1.0.0.1

Copyright:
Copyright (C) 2015-2016 上海欣烁网络科技有限公司

Original file name:
蓝月传奇.exe

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Digital Signature
Authority:
WoSign CA Limited

Valid from:
12/22/2015 8:55:58 AM

Valid to:
1/22/2017 8:55:58 AM

Subject:
CN=上海欣烁网络科技有限公司, O=上海欣烁网络科技有限公司, L=上海市, S=上海市, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA G2, O=WoSign CA Limited, C=CN

Serial number:
523EB77A079803060D89EC18312D9636

File PE Metadata
Compilation timestamp:
6/19/2009 5:33:27 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:hsDl+5UQR1/nbIGtTILS+neuIohA47f7VqzWG7S9P0/6Nh:GGR5buu+echb7zVGWG7Sx0/6L

Entry address:
0x3291

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 28, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 38, 3F, 42, 00, E8, BA, 2C, 00, 00, A3, 84, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 50, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B0, 91, 40, 00, 68, 80, 36, 42, 00, E8, 43, 29, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, 31, 29, 00, 00...
 
[+]

Entropy:
7.9928

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

Access Provider
Name:
Windows NT Access Provider


The file sogoulycq.exe has been discovered within the following programs.

Adobe Reader X (10.1.5)  by Adobe Systems Incorporated
Adobe Acrobat X (version 10.0) is an applications designed to view, create, manipulate, print and manage files in Portable Document Format (PDF). Acrobat and Reader are widely used as a method of presenting information with a fixed layout similar to a paper publication.
www.adobe.com
4% remove it
Java 7 Update 13  by Oracle Corporation
This release includes important security fixes. Oracle strongly recommends that all Java SE 7 users upgrade to this release.
java.com
9% remove it
Java 7 Update 15  by Oracle Corporation
Publisher's description - “The full version string for this update release is 1.7.0_15-b03 (where "b" means "build") and the version number is 7u15. JDK 7u15 contains Olson time zone data version 2012i. For more information, refer to Timezone Data Versions in the JRE Software.”
www.oracle.com/technetwork/java/javase/7u15-relnotes-1907738.html
6% remove it
Java 7 Update 7  by Oracle Corporation
Publisher's description - “This releases brings in key security features and bug fixes. Oracle strongly recommends that all Java SE 7 users upgrade to this release. JavaFX 2.2.4 is now bundled with the JDK on Windows, Mac and Linux x86/x64.”
12% remove it
QuarkXPress  by Quark Inc.
www.quark.com
8% remove it
The Sims™ Life Stories  by Electronic Arts
The Sims Life Stories is a video game distributed through EA's Origin digital distribution and digital rights management content delivery system.
www.ea.com
5% remove it
Total Video Converter 3.71 100812  by EffectMatrix Inc.
Publisher's description - “E.M. Total Video Converter is a piece of extremely powerful and full-featured converter software that supports almost all video and audio formats.”
www.effectmatrix.com/total-video-converter
19% remove it
TVCenter  by PCTV Systems
Publisher's description - “PCTV TV Center is equipped with a powerful PVR functionality. You can watch your favorite TV stations, timeshift, schedule recordings and much more . PCTV TV products bring TV to your computer. You can easily enable your PC / Laptop with a full featured TV functionality.”
www.pctvsystems.com
23% remove it
 
Powered by Should I Remove It?

Scan sogoulycq.exe - Powered by Reason Core Security