Unins.exe

全民发发啦卸载程序

广西千炎网络科技有限公司

Publisher:
QianYan  (signed by 广西千炎网络科技有限公司)

Product:
全民发发啦卸载程序

Version:
1.15.1221.1

MD5:
2db007f287065c5cdb258e6734ca42df

SHA-1:
031293e955e4f9784d1d0a274a3fc4b12739ffaa

SHA-256:
63b9f91c62c6e97fbdb651e3d225008eb0e495a7080f6a76f5e9cb8aca511f11

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
1/15/2025 1:14:43 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Generic
2017.0.2697

File size:
1.6 MB (1,643,632 bytes)

Product version:
1.15.1221.1

Copyright:
Copyright (C) 2015

Original file name:
Unins.exe

Language:
Chinese (Simplified, PRC)

Common path:
C:\users\{user}\appdata\local\temp\del7d1b.tmp

Digital Signature
Authority:
Thawte, Inc.

Valid from:
11/17/2015 8:00:00 AM

Valid to:
11/17/2016 7:59:59 AM

Subject:
CN=广西千炎网络科技有限公司, OU=技术, O=广西千炎网络科技有限公司, L=南宁, S=广西, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
1ECA4D827EC25FB144574CEF9DE92C0E

File PE Metadata
Compilation timestamp:
12/21/2015 10:27:46 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
24576:4AhYOx7x5BmuoE87SitLhz0TNi28FzxwaUnwRFhOnPewS9Ol42:xVl5BmHJ7SiHKo2896aUnSz8ebAl42

Entry address:
0xD2A14

Entry point:
E8, 21, 08, 01, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, 56, 8B, 75, 08, 85, F6, 74, 13, 8B, 55, 0C, 85, D2, 74, 0C, 8B, 4D, 10, 85, C9, 75, 19, 33, C0, 66, 89, 06, E8, C2, 62, 00, 00, 6A, 16, 5E, 89, 30, E8, 26, C6, 00, 00, 8B, C6, 5E, 5D, C3, 57, 8B, FE, 2B, F9, 0F, B7, 01, 66, 89, 04, 0F, 8D, 49, 02, 66, 85, C0, 74, 03, 4A, 75, EE, 33, C0, 5F, 85, D2, 75, DF, 66, 89, 06, E8, 8D, 62, 00, 00, 6A, 22, EB, C9, CC, CC, CC, CC, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 7F, 0F, B6, 44, 24, 08, 0F, BA, 25...
 
[+]

Entropy:
6.9597

Code size:
1004 KB (1,028,096 bytes)

Scan Unins.exe - Powered by Reason Core Security