XpzsInstaller.exe

小皮助手安装程序

厦门小皮网络有限公司

This is a self-extracting archive and installer.
Publisher:
厦门小皮网络有限公司  (signed and verified)

Product:
小皮助手安装程序

Version:
3.3.0.0

MD5:
af2e5ea799a7f8985a6f3d701276d0ea

SHA-1:
8c78006dc45c0b33713adb93e2dc7f56a407f60f

SHA-256:
b0208e5c24b702824f25372ef3fa980387a3517bda8245274d3496ba2f1be1dd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 8:58:55 AM UTC  (today)

File size:
956.4 KB (979,312 bytes)

Product version:
3.3.0.0

Copyright:
Copyright (C) 2015

Original file name:
XpzsInstaller.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, PRC)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\xpzsinstaller.exe

Digital Signature
Authority:
WoSign CA Limited

Valid from:
10/20/2015 10:25:54 AM

Valid to:
12/20/2016 10:25:54 AM

Subject:
CN=厦门小皮网络有限公司, O=厦门小皮网络有限公司, L=厦门市, S=福建省, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign CA Limited, C=CN

Serial number:
5582A6B204C55176F5BE5A9A34C4008A

File PE Metadata
Compilation timestamp:
10/27/2016 5:17:49 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:XqOT8mkv2EytoF56Omh0NNr0A6kHmxjZfoj:gFMOmyNhb6kHIZG

Entry address:
0xB8D0

Entry point:
E8, 8E, 04, 00, 00, E9, 63, FD, FF, FF, 6A, 14, 68, B8, FA, 4C, 00, E8, DA, 01, 00, 00, 83, 65, FC, 00, FF, 4D, 10, 78, 3A, 8B, 4D, 08, 2B, 4D, 0C, 89, 4D, 08, FF, 55, 14, EB, ED, 8B, 45, EC, 89, 45, E4, 8B, 45, E4, 8B, 00, 89, 45, E0, 8B, 45, E0, 81, 38, 63, 73, 6D, E0, 74, 0B, C7, 45, DC, 00, 00, 00, 00, 8B, 45, DC, C3, E8, D8, 04, 00, 00, 8B, 65, E8, C7, 45, FC, FE, FF, FF, FF, E8, D0, 01, 00, 00, C2, 10, 00, 6A, 0C, 68, D8, FA, 4C, 00, E8, 7C, 01, 00, 00, 83, 65, E4, 00, 8B, 75, 0C, 8B, C6, 0F, AF, 45...
 
[+]

Entropy:
7.7180  (probably packed)

Code size:
49.5 KB (50,688 bytes)

Scan XpzsInstaller.exe - Powered by Reason Core Security