xiuxiu_green.exe

美图秀秀

厦门美图网科技有限公司

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer.
Publisher:
厦门美图网科技有限公司  (signed and verified)

Product:
美图秀秀

Description:
美图秀秀 4.0.1

Version:
4.0.1.2002

MD5:

SHA-1:
2d2dc6b1654290cd2c598f5ada0c3d42a1d53648

SHA-256:
06bf00d32c8c5a48c00bc60a4ddca5d865c8cb1dc18a6b12bb3ccdeccf7a92a7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 11:48:36 AM UTC  (today)

File size:
28.4 MB (29,764,536 bytes)

Copyright:
Meitu.com

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\xiuxiu_green.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
11/20/2014 8:00:00 AM

Valid to:
2/19/2017 7:59:59 AM

Subject:
CN=厦门美图网科技有限公司, OU=产品部, O=厦门美图网科技有限公司, L=Xiamen, S=Fujian, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
77E795D3E408425975BDEF265A3B6A68

File PE Metadata
Compilation timestamp:
9/9/2009 9:23:23 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x354B

Entry point:
81, EC, D4, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 18, C7, 44, 24, 10, D8, 84, 40, 00, 89, 6C, 24, 14, FF, 15, 30, 80, 40, 00, 68, 01, 80, 00, 00, FF, 15, B8, 80, 40, 00, 55, FF, 15, B0, 82, 40, 00, 6A, 08, A3, 98, 06, 47, 00, E8, 67, 27, 00, 00, 55, 68, B4, 02, 00, 00, A3, B0, 05, 47, 00, 8D, 44, 24, 38, 50, 55, 68, 1C, 86, 40, 00, FF, 15, 80, 81, 40, 00, 68, 04, 86, 40, 00, 68, A0, 85, 46, 00, E8, 35, 26, 00, 00, FF, 15, B4, 80, 40, 00, 50, BF, A0, 10, 4C, 00, 57, E8, 23, 26, 00, 00...
 
[+]

Entropy:
8.0000

Packer / compiler:
Nullsoft install system v2.x

Code size:
25 KB (25,600 bytes)

Access Provider
Name:
MartaExtension


The file xiuxiu_green.exe has been discovered within the following programs.

Adobe Reader X (10.1.5)  by Adobe Systems Incorporated
Adobe Acrobat X (version 10.0) is an applications designed to view, create, manipulate, print and manage files in Portable Document Format (PDF). Acrobat and Reader are widely used as a method of presenting information with a fixed layout similar to a paper publication.
www.adobe.com
4% remove it
Java 7 Update 13  by Oracle Corporation
This release includes important security fixes. Oracle strongly recommends that all Java SE 7 users upgrade to this release.
java.com
9% remove it
Java 7 Update 15  by Oracle Corporation
Publisher's description - “The full version string for this update release is 1.7.0_15-b03 (where "b" means "build") and the version number is 7u15. JDK 7u15 contains Olson time zone data version 2012i. For more information, refer to Timezone Data Versions in the JRE Software.”
www.oracle.com/technetwork/java/javase/7u15-relnotes-1907738.html
6% remove it
Java 7 Update 7  by Oracle Corporation
Publisher's description - “This releases brings in key security features and bug fixes. Oracle strongly recommends that all Java SE 7 users upgrade to this release. JavaFX 2.2.4 is now bundled with the JDK on Windows, Mac and Linux x86/x64.”
12% remove it
QuarkXPress  by Quark Inc.
www.quark.com
8% remove it
The Sims™ Life Stories  by Electronic Arts
The Sims Life Stories is a video game distributed through EA's Origin digital distribution and digital rights management content delivery system.
www.ea.com
5% remove it
Total Video Converter 3.71 100812  by EffectMatrix Inc.
Publisher's description - “E.M. Total Video Converter is a piece of extremely powerful and full-featured converter software that supports almost all video and audio formats.”
www.effectmatrix.com/total-video-converter
19% remove it
TVCenter  by PCTV Systems
Publisher's description - “PCTV TV Center is equipped with a powerful PVR functionality. You can watch your favorite TV stations, timeshift, schedule recordings and much more . PCTV TV products bring TV to your computer. You can easily enable your PC / Laptop with a full featured TV functionality.”
www.pctvsystems.com
23% remove it
 
Powered by Should I Remove It?

Scan xiuxiu_green.exe - Powered by Reason Core Security