acs.exe

診断復旧ツールアップデータ

NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NTTE_OSA_AUS’.
Publisher:
東日本電信電話株式会社  (signed by NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION)

Product:
診断復旧ツールアップデータ

Version:
2, 0, 190, 0

MD5:
ca4a94c521b177cf9391a1c2b1bd1d84

SHA-1:
7136e24bb8eed13caae011879af36608a5cfffa3

SHA-256:
73d1a9d16e977740e6ed05298ff7015aeb39becb1f1a10a8eec1bcb78ff7230b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:39:47 AM UTC  (today)

File size:
833.3 KB (853,344 bytes)

Product version:
2, 0, 19, 0

Copyright:
Copyright (C) 2007 東日本電信電話株式会社

Original file name:
aus.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ntte\osa_supporttool\aus\acs.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/17/2007 9:00:00 AM

Valid to:
7/17/2008 8:59:59 AM

Subject:
CN=NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION, OU=Network Business Headquarters, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION, L=Shinjuku, S=Tokyo, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
23547C2234E839D04C743169408C6191

File PE Metadata
Compilation timestamp:
12/25/2007 5:25:59 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:VjGQB3cLxDm2HS9O9re9MiQnJ9ZWzl0uvlttFw3ntR:Vj330mq8OhLZWBpv7wXtR

Entry address:
0x53F9D

Entry point:
E8, 79, B7, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 83, EC, 10, FF, 75, 0C, 8D, 4D, F0, E8, 0B, F0, FF, FF, 8B, 45, F0, 83, B8, AC, 00, 00, 00, 01, 7E, 13, 8D, 45, F0, 50, 6A, 01, FF, 75, 08, E8, 59, AE, 00, 00, 83, C4, 0C, EB, 10, 8B, 80, C8, 00, 00, 00, 8B, 4D, 08, 0F, B6, 04, 48, 83, E0, 01, 80, 7D, FC, 00, 74, 07, 8B, 4D, F8, 83, 61, 70, FD, C9, C3, 83, 3D, E4, 9E, 4B, 00, 00, 75, 12, 8B, 44, 24, 04, 8B, 0D, 28, 66, 4B, 00, 0F, B6, 04, 41, 83, E0, 01, C3, 6A, 00, FF, 74, 24, 08, E8, 8B, FF, FF, FF, 59...
 
[+]

Entropy:
6.4818

Code size:
580 KB (593,920 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NTTE_OSA_AUS

Command:
"C:\Program Files\ntte\osa_supporttool\aus\acs.exe" -silent


Scan acs.exe - Powered by Reason Core Security