YodaoDict.exe

有道词典

NetEase Youdao Information Technology (Beijing) Co., Ltd.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘YodaoDict’.
Publisher:
网易公司  (signed by NetEase Youdao Information Technology (Beijing) Co., Ltd.)

Product:
有道词典

Version:
6.3.68.1124

MD5:
0d615765fb5f1b6c16e1882df0a9cac9

SHA-1:
73d0feb2e6ae78d36195fb1c3cf71999c88a59ec

SHA-256:
99247d5458ed187c9ed2ad4ae02f6c655abfd6edee7d4bd68d8d4482653b98fb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
2/26/2025 5:46:51 AM UTC  (today)

File size:
5.2 MB (5,434,720 bytes)

Product version:
6.3.68.1124

Copyright:
(C) 网易公司。保留所有权利。

Original file name:
YodaoDict.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\youdao\dictexp\application\yodaodict.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/16/2015 8:00:00 AM

Valid to:
9/16/2018 7:59:59 AM

Subject:
CN="NetEase Youdao Information Technology (Beijing) Co., Ltd.", OU=Product Dept., O="NetEase Youdao Information Technology (Beijing) Co., Ltd.", L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
37ECFB2B292101C423E04CBCEAE04B1E

File PE Metadata
Compilation timestamp:
11/26/2015 4:23:20 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x2AD416

Entry point:
E8, AD, B2, 00, 00, E9, 89, FE, FF, FF, 3B, 0D, 10, CC, 82, 00, 75, 02, F3, C3, E9, 34, B3, 00, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 56, 8B, F1, C6, 46, 0C, 00, 85, C0, 75, 63, E8, 31, AF, 00, 00, 89, 46, 08, 8B, 48, 6C, 89, 0E, 8B, 48, 68, 89, 4E, 04, 8B, 0E, 3B, 0D, 70, D5, 82, 00, 74, 12, 8B, 0D, 28, D3, 82, 00, 85, 48, 70, 75, 07, E8, 9E, BD, 00, 00, 89, 06, 8B, 46, 04, 3B, 05, 30, D2, 82, 00, 74, 16, 8B, 46, 08, 8B, 0D, 28, D3, 82, 00, 85, 48, 70, 75, 08, E8, FD, B5, 00, 00, 89, 46, 04, 8B, 46, 08, F6...
 
[+]

Entropy:
6.6095

Code size:
3.5 MB (3,623,424 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
YodaoDict

Command:
"C:\users\{user}\appdata\local\youdao\dictexp\application\yodaodict.exe" -hide -autostart


Scan YodaoDict.exe - Powered by Reason Core Security