bizmessenger.exe

LG Uplus Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘BizMessenger’.
Publisher:
LG Uplus Corporation  (signed and verified)

MD5:
1f4f30b370541a0f6fda80c46665d5d5

SHA-1:
4055e62e7bc0e3de32fe534b7983e9928ff001f2

SHA-256:
bf3a8241dc35864012617aeb29213a7c81b3ecf96427d697bebc2e30c15c4b1d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/21/2025 4:56:18 AM UTC  (today)

File size:
1.6 MB (1,687,256 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\uplusmessenger\bizmessenger.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
1/6/2016 9:00:00 AM

Valid to:
10/5/2016 8:59:59 AM

Subject:
CN=LG Uplus Corporation, O=LG Uplus Corporation, L=Jung-gu, S=Seoul, C=KR

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
73B229C453F7520317DAA8EB150C2F1C

File PE Metadata
Compilation timestamp:
4/21/2016 7:51:19 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:dkZg/DnnyINfhC12e1BHkK+zwpz0HRofVxLcW1GAPCG+oSiYP4AzZHuIyS/+:0g/LyINfhy2e1BHkK+zwpzIGVxLcW1DN

Entry address:
0xF5215

Entry point:
E8, 0B, 92, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 53, 8B, 5D, 08, 83, FB, E0, 77, 6F, 56, 57, 83, 3D, A8, 48, 56, 00, 00, 75, 18, E8, 70, 84, 00, 00, 6A, 1E, E8, BA, 82, 00, 00, 68, FF, 00, 00, 00, E8, BD, 0C, 00, 00, 59, 59, 85, DB, 74, 04, 8B, C3, EB, 03, 33, C0, 40, 50, 6A, 00, FF, 35, A8, 48, 56, 00, FF, 15, 54, 92, 51, 00, 8B, F8, 85, FF, 75, 26, 6A, 0C, 5E, 39, 05, B0, 48, 56, 00, 74, 0D, 53, E8, 4E, 92, 00, 00, 59, 85, C0, 75, A9, EB, 07, E8, 81, 0B, 00, 00, 89, 30, E8, 7A, 0B, 00, 00, 89...
 
[+]

Entropy:
6.3501

Code size:
1.1 MB (1,143,808 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
BizMessenger

Command:
C:\Program Files\uplusmessenger\bizmessenger.exe


Scan bizmessenger.exe - Powered by Reason Core Security