Information about wechat.exe

wechat.exe

Product Name:

WeChat

Company Name:

Tencent

MD5: 1cba67c69ba16ef0dd53b640b2a241b8
Size: 260 KB
First Published: 2017-05-21 06:06:44 (7 years ago)
Latest Published: 2020-07-15 23:47:08 (4 years ago)
Status: Undefined (on last analysis)
Analysis Date: 2020-07-15 23:47:08 (4 years ago)
%programfiles%\tencent\wechat
%temp%\nsh2675.tmp\wechatsetup
%sysdrive%\adwcleaner\quarantine\files\hocbtswnfldxpyedvaorkqqyqrntepxh\wechat
%temp%\nsx9dd3.tmp\wechatsetup
%temp%\nsvc9bb.tmp\wechatsetup
%profile%\downloads\wechat
%sysdrive%\windows.old\users\user\appdata\local\temp\nsdebf7.tmp\wechatsetup
%sysdrive%\windows.old\users\user\appdata\local\temp\nsx3387.tmp\wechatsetup
%temp%\nsx9e3d.tmp\wechatsetup
%temp%\nsd3e3.tmp\wechatsetup
WeChat.exe
wechat.exe
WeChat.exe.quarantined
54.4%
13.6%
9.2%
5.2%
2.8%
2.8%
2.0%
2.0%
1.6%
1.2%
0.8%
0.8%
0.8%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
Windows 10 50.4%
Windows 7 32.4%
Windows 8.1 17.2%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00003b8b

PE Sections:

Name Size of data MD5
.text 47104 3139ea526787f489c8da7b1b809feae6
.rdata 28160 ab3e1a670875440747ed5982836d4a54
.data 4096 2627910f5a1310cfb6e86eb7a7db23af
.rsrc 154112 d8988226d02f73fe5fdd31a56a9536f3
.reloc 16384 a2b46cf70ad9252c61e3f6ae0ac39cec

More information: