tu8_43_setup.exe

东莞市金斧子网络科技有限公司

This is a setup and installation application.
Publisher:

Version:
2.0.0.4

MD5:
58a92b22d8791a52c5b8d1c2c727f8c2

SHA-1:
9ac234b5ef3b5a269695c8f4c106346e4baf7a32

SHA-256:
eea423c08cabf0353c8d2669aa775d09fb84599ed4ea29c9892de7e4aaa9e6c6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/13/2025 6:46:33 AM UTC  (today)

File size:
6.6 MB (6,946,768 bytes)

Product version:
2.0.0.4

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\users\{user}\appdata\roaming\tu8_43_setup.exe

Digital Signature
Authority:
WoSign CA Limited

Valid from:
10/23/2015 12:21:00 AM

Valid to:
11/22/2016 11:21:00 PM

Subject:
CN=东莞市金斧子网络科技有限公司, E=3189255925@qq.com, O=东莞市金斧子网络科技有限公司, L=东莞市, S=广东省, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign CA Limited, C=CN

Serial number:
5002674B14FB61E69C0EEFB262234238

File PE Metadata
Compilation timestamp:
2/17/2017 5:33:18 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x11DF7

Entry point:
E8, 81, 60, 00, 00, E9, 7F, FE, FF, FF, A1, 10, D0, 42, 00, C3, 6A, 08, 68, 40, B5, 42, 00, E8, 3D, 10, 00, 00, 8B, 75, 08, 85, F6, 0F, 84, FE, 00, 00, 00, 83, 7E, 24, 00, 74, 09, FF, 76, 24, E8, 39, E4, FF, FF, 59, 83, 7E, 2C, 00, 74, 09, FF, 76, 2C, E8, 2A, E4, FF, FF, 59, 83, 7E, 34, 00, 74, 09, FF, 76, 34, E8, 1B, E4, FF, FF, 59, 83, 7E, 3C, 00, 74, 09, FF, 76, 3C, E8, 0C, E4, FF, FF, 59, 83, 7E, 40, 00, 74, 09, FF, 76, 40, E8, FD, E3, FF, FF, 59, 83, 7E, 44, 00, 74, 09, FF, 76, 44, E8, EE, E3, FF, FF...
 
[+]

Entropy:
7.9811  (probably packed)

Code size:
131 KB (134,144 bytes)

Scan tu8_43_setup.exe - Powered by Reason Core Security