w32_shade131_upkit.exe

decode zip unicode version.

e frontier,inc.

Publisher:
pon software   (signed by e frontier,inc.)

Product:
decode zip unicode version.

Description:
Win32 Zip Self-Extractor

Version:
6.01

MD5:
40c5bf8ece4d793579f0cfb760659641

SHA-1:
c4d37616a475592193192d4d0fe638675c0b2d8b

SHA-256:
6412bbd09b4e259cfe006000cd977e54fe95bb8c9999f5feb1a5fb70895e6ebb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 9:37:08 AM UTC  (today)

File size:
122 MB (127,899,368 bytes)

Product version:
6.01

Copyright:
Copyright(c) 2001-2008 by pon software

Original file name:
deczipW.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\w32_shade131_upkit.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/31/2011 9:00:00 AM

Valid to:
8/31/2012 8:59:59 AM

Subject:
CN="e frontier,inc.", OU=Development, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="e frontier,inc.", L=Shinjuku-ku, S=Tokyo, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2FBA6A9E22FAD107BC7F33B0FD76FA07

File PE Metadata
Compilation timestamp:
2/9/2008 8:45:06 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3145728:uEs1y0xXxdwJlnZ4EiPnU4+1D3mTDWEmlfL6gdF:uH3vwbZNoUb1Dm/FQfec

Entry address:
0x334A

Entry point:
55, 8B, EC, 81, EC, 1C, 03, 00, 00, 8D, 85, 6C, FF, FF, FF, 56, 50, C7, 85, 6C, FF, FF, FF, 94, 00, 00, 00, FF, 15, 78, A0, 40, 00, 6A, 00, FF, 15, E0, A0, 40, 00, A3, 24, FB, 40, 00, FF, 15, 00, A0, 40, 00, FF, 15, 54, A1, 40, 00, 8B, F0, 6A, 02, 59, 66, 8B, 06, 66, 3D, 22, 00, 75, 1B, 66, 8B, 04, 0E, 03, F1, 66, 85, C0, 74, 06, 66, 3D, 22, 00, 75, EF, 66, 83, 3E, 22, 75, 12, 03, F1, EB, 0E, 66, 3D, 20, 00, 76, 08, 03, F1, 66, 83, 3E, 20, 77, F8, 66, 8B, 06, 66, 85, C0, 74, 06, 66, 3D, 20, 00, 76, E0, 39...
 
[+]

Entropy:
8.0000

Developed / compiled with:
Microsoft Visual C++

Code size:
36 KB (36,864 bytes)

Scan w32_shade131_upkit.exe - Powered by Reason Core Security