acs.exe

診断復旧ツールアップデータ

NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NTTE_OSA_AUS’.
Publisher:
東日本電信電話株式会社  (signed by NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION)

Product:
診断復旧ツールアップデータ

Version:
2, 0, 75, 0

MD5:
502749bb96a63232164b396f2c45a942

SHA-1:
21802dc4deab3a56e8ea134accc1d43f079fa96e

SHA-256:
a1c8f67e002310163d5d9c987f97c6cf5ace21f84d2b9a6d744772c236df815d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/9/2024 11:18:08 AM UTC  (today)

File size:
836 KB (856,064 bytes)

Product version:
2, 0, 7, 0

Copyright:
Copyright (C) 2007 東日本電信電話株式会社

Original file name:
aus.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ntte\osa_supporttool\aus\acs.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/17/2007 9:00:00 AM

Valid to:
7/17/2008 8:59:59 AM

Subject:
CN=NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION, OU=Network Business Headquarters, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION, L=Shinjuku, S=Tokyo, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
23547C2234E839D04C743169408C6191

File PE Metadata
Compilation timestamp:
9/2/2007 2:06:04 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:2EW8xCZDxNaTbzknvhwzOU6re9HnrjeZi/+RNUs9kdi6XFitzsCdk3nt:2EWKwjaTAJwKUHj3/+Ras90HFS7dkXt

Entry address:
0x5407D

Entry point:
E8, EF, B9, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 83, EC, 10, FF, 75, 0C, 8D, 4D, F0, E8, 0B, F0, FF, FF, 8B, 45, F0, 83, B8, AC, 00, 00, 00, 01, 7E, 13, 8D, 45, F0, 50, 6A, 01, FF, 75, 08, E8, 19, B1, 00, 00, 83, C4, 0C, EB, 10, 8B, 80, C8, 00, 00, 00, 8B, 4D, 08, 0F, B6, 04, 48, 83, E0, 01, 80, 7D, FC, 00, 74, 07, 8B, 4D, F8, 83, 61, 70, FD, C9, C3, 83, 3D, 04, 9F, 4B, 00, 00, 75, 12, 8B, 44, 24, 04, 8B, 0D, 38, 66, 4B, 00, 0F, B6, 04, 41, 83, E0, 01, C3, 6A, 00, FF, 74, 24, 08, E8, 8B, FF, FF, FF, 59...
 
[+]

Entropy:
6.4720

Code size:
580 KB (593,920 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NTTE_OSA_AUS

Command:
"C:\Program Files\ntte\osa_supporttool\aus\acs.exe" -silent


Scan acs.exe - Powered by Reason Core Security