acs.exe

診断復旧ツールアップデータ

NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NTTE_OSA_AUS’.
Publisher:
東日本電信電話株式会社  (signed by NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION)

Product:
診断復旧ツールアップデータ

Version:
3, 5, 0, 0

MD5:
788feaa32ffa3cbc9363399dc933377c

SHA-1:
39de3701352e9ce72538f899806bd490141cdc20

SHA-256:
32a2b375228a6ae37ab2f36eaaa899ebf5119e6d8e1382912865abc0bf0e5296

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:28:17 PM UTC  (today)

File size:
2.2 MB (2,319,712 bytes)

Product version:
3, 5, 0, 0

Copyright:
Copyright (C) 2008 東日本電信電話株式会社

Original file name:
aus.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ntte\osa_supporttool\aus\acs.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/17/2007 9:00:00 AM

Valid to:
7/17/2008 8:59:59 AM

Subject:
CN=NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION, OU=Network Business Headquarters, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION, L=Shinjuku, S=Tokyo, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
23547C2234E839D04C743169408C6191

File PE Metadata
Compilation timestamp:
6/10/2008 11:37:35 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:NvEuHFL9D9D5vmJJ1wMm5/Z7oKjCLp/+owr0oHC3WWE5+4pyC+uaEh95TrXtw:NRD9u4OKulwrpLWE5ppy91Eh95TrK

Entry address:
0xFB57E

Entry point:
E8, D9, E4, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 83, EC, 10, FF, 75, 0C, 8D, 4D, F0, E8, 0B, F0, FF, FF, 8B, 45, F0, 83, B8, AC, 00, 00, 00, 01, 7E, 16, 8D, 45, F0, 50, 68, 03, 01, 00, 00, FF, 75, 08, E8, 72, 13, 00, 00, 83, C4, 0C, EB, 12, 8B, 80, C8, 00, 00, 00, 8B, 4D, 08, 0F, B7, 04, 48, 25, 03, 01, 00, 00, 80, 7D, FC, 00, 74, 07, 8B, 4D, F8, 83, 61, 70, FD, C9, C3, 83, 3D, 2C, FF, 61, 00, 00, 75, 14, 8B, 44, 24, 04, 8B, 0D, 88, A4, 61, 00, 0F, B7, 04, 41, 25, 03, 01, 00, 00, C3, 6A, 00, FF, 74, 24...
 
[+]

Entropy:
6.1022

Code size:
1.3 MB (1,347,584 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NTTE_OSA_AUS

Command:
"C:\Program Files\ntte\osa_supporttool\aus\acs.exe" -silent


Scan acs.exe - Powered by Reason Core Security