CDrCmMon.exe

CableDoctor

Arcdo Co.,Ltd

It runs as a windows Service named “CableDoctor Command Service”.
Publisher:
Arcdo Co., Ltd.  (signed by Arcdo Co.,Ltd)

Product:
CableDoctor

Description:
CDrCmMon

Version:
2, 5, 0, 0

MD5:
cd328e1e3fbef99cc2fa6887f0ee7e45

SHA-1:
8d100007d57bfd7abfa50ee9b04e2dd87bbaf974

SHA-256:
49158ee68ac407656f9caf4d999c3fc329f4b7c947b7f1f0af8ee394673c5082

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:22:29 PM UTC  (today)

File size:
63.6 KB (65,128 bytes)

Product version:
2, 5, 0, 0

Copyright:
Copyright (C) 2008-2012 Arcdo Co., Ltd. All rights reserved.

Original file name:
CDrCmMon.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\arcdo\cabledr\cdrcmmon.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
12/1/2011 9:00:00 AM

Valid to:
12/31/2012 8:59:59 AM

Subject:
CN="Arcdo Co.,Ltd", O="Arcdo Co.,Ltd", L=Geumcheon-gu, S=seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
6049E4F6E0AEF25828E44E80106A5899

File PE Metadata
Compilation timestamp:
6/1/2012 9:56:47 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
768:dESQzjh87GckWqexX35vreF3yralu1MZqHmF7y08+0xD6lKvIILY:G/jhCGcXzahyralu1CqHNX+Yjc

Entry address:
0x21C9

Entry point:
E8, 0E, 26, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, B8, CD, 40, 00, 89, 0D, B4, CD, 40, 00, 89, 15, B0, CD, 40, 00, 89, 1D, AC, CD, 40, 00, 89, 35, A8, CD, 40, 00, 89, 3D, A4, CD, 40, 00, 66, 8C, 15, D0, CD, 40, 00, 66, 8C, 0D, C4, CD, 40, 00, 66, 8C, 1D, A0, CD, 40, 00, 66, 8C, 05, 9C, CD, 40, 00, 66, 8C, 25, 98, CD, 40, 00, 66, 8C, 2D, 94, CD, 40, 00, 9C, 8F, 05, C8, CD, 40, 00, 8B, 45, 00, A3, BC, CD, 40, 00, 8B, 45, 04, A3, C0, CD, 40, 00, 8D, 45, 08, A3, CC, CD, 40...
 
[+]

Entropy:
6.4888

Code size:
29 KB (29,696 bytes)

Service
Display name:
CableDoctor Command Service

Service name:
CDrCmMon

Type:
Win32OwnProcess, InteractiveProcess


Scan CDrCmMon.exe - Powered by Reason Core Security