ChkOSBe.exe

MyGuard

ITM System Co.,LTD

Publisher:
ITM SYSTEM.,LTD  (signed by ITM System Co.,LTD)

Product:
MyGuard

Version:
3.00.0185

MD5:
43f3fdc67717f39977c2889f87a01364

SHA-1:
ccbf1a79d277ebd0a61a19d0a582af632e3887dd

SHA-256:
8846476d34b19a443bacc84202afaf7b99d726cac74e02ec2936ac9d30e67b10

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 4:54:32 PM UTC  (today)

File size:
932.2 KB (954,544 bytes)

Product version:
3.00.0185

Copyright:
ITM SYSTEM.,LTD

Trademarks:
MyGuard

Original file name:
ChkOSBe.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\chkosbe.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/8/2011 2:01:39 PM

Valid to:
6/7/2014 4:32:23 PM

Subject:
CN="ITM System Co.,LTD", OU=DevTeam, O="ITM System Co.,LTD", L=Guro-gu, S=Seoul, C=KR

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
010000000001306DE166BE

File PE Metadata
Compilation timestamp:
12/16/2013 9:00:02 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288://Iw0YFd/FfnShKYCIOnP6FVk93v8MYdAU3gKGG:3Iw0o3fn4JOnP6FVkFv8MYd/gG

Entry address:
0x273C

Entry point:
68, 2C, 32, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 75, C5, 63, B2, F4, 4C, 96, 41, BE, 24, 94, D4, 6D, 70, 81, 34, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 76, 24, 0D, 0A, 4F, 6E, 43, 68, 65, 63, 6B, 4F, 53, 42, 65, 66, 6F, 72, 65, 00, 72, 48, 00, 00, 00, 00, FF, CC, 31, 00, 00, 24, 8C, BA, 1E, 4B, 22, 18, 43, 8D, DD, 71, 79, 0F, 24, 6F, 8D, 07, 21, C3, FB, EA, F2, BA, 42, 92, 4F, 76, C1, A0, 34, FC, 91, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00...
 
[+]

Entropy:
5.6444

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
912 KB (933,888 bytes)

Scan ChkOSBe.exe - Powered by Reason Core Security