admworker.exe

AdminWorker_win

HANCOM. INC.

Publisher:
Hancom Inc.  (signed by HANCOM. INC.)

Product:
AdminWorker_win

Description:
ThinkFree Office System Controller

Version:
6.0.0001.397

MD5:
f8ea74aadf35594a51feb57687c95c3c

SHA-1:
f589047269e0d5de88772828ffac233dd9a793b2

SHA-256:
c79c8c7c04df843640651dc36253382261aa3e630ec3a575f033c0f683a0b181

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/4/2024 10:59:44 PM UTC  (today)

File size:
151.6 KB (155,264 bytes)

Product version:
6.0.0001.397

Copyright:
(c)2009 Hancom Inc.

Original file name:
admworker.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\sourcenext\thinkfree office\admworker.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
12/27/2012 9:00:00 AM

Valid to:
6/10/2015 8:59:59 AM

Subject:
CN=HANCOM. INC., OU=System, OU=Digital ID Class 3 - Java Object Signing, O=HANCOM. INC., L=Seongnam-si, S=Gyeonggi-do, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
416400B8512C75A59677FE83A8E1EDE7

File PE Metadata
Compilation timestamp:
7/27/2012 10:22:35 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
2.56

CTPH (ssdeep):
3072:1Pg8VoHwYFwXwCCfHx6h40zdWZiNIg0QqZ9noc6HeCL33wT66vlmrUFfeaL:1PvmwAwXwX+40zcsNP0p/oc6Hr3wT665

Entry address:
0x11D8

Entry point:
4D, 5A, 90, 00, 03, 00, 00, 00, 04, 00, 00, 00, FF, FF, 00, 00, B8, 00, 00, 00, 00, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 80, 00, 00, 00, 0E, 1F, BA, 0E, 00, B4, 09, CD, 21, B8, 01, 4C, CD, 21, 54, 68, 69, 73, 20, 70, 72, 6F, 67, 72, 61, 6D, 20, 63, 61, 6E, 6E, 6F, 74, 20, 62, 65, 20, 72, 75, 6E, 20, 69, 6E, 20, 44, 4F, 53, 20, 6D, 6F, 64, 65, 2E, 0D, 0D, 0A, 24, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.5477

Code size:
130.5 KB (133,632 bytes)

Scan admworker.exe - Powered by Reason Core Security