cwidget.exe

credu widget

Credu Co., Ltd.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘cwidget’.
Publisher:
Credu Co., Ltd.  (signed and verified)

Product:
credu widget

Version:
1.1.8.0

MD5:
16fa5ce32599605189944c4327197ecb

SHA-1:
cc08dae53700ba3f41071227a539eeda7b496045

SHA-256:
02ba235fcf85bb8de8809b5cbb75b11ac6238c917ec00f906abc81ef441491bc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 9:33:11 PM UTC  (today)

File size:
4.1 MB (4,275,536 bytes)

Product version:
1.1.3.0

Copyright:
Copyright (c) 2006 - 2010 Credu. All rights reserved.

Original file name:
cwidget

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\credu\widget\cwidget.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/2/2011 9:00:00 AM

Valid to:
12/2/2014 8:59:59 AM

Subject:
CN="Credu Co., Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Credu Co., Ltd.", L="Jung-gu ", S=SEOUL, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
33DD6578AF329009520618561408508C

File PE Metadata
Compilation timestamp:
6/20/1992 7:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:unUr5lz5AoY6ezR1dql+T7q8NLROsin4jqVdcWqnTw0KmwUS2QVWTOc6:uUnYl0Ui8NLyn4Yc6Gd+WTO1

Entry address:
0x151AAC

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 14, 14, 55, 00, E8, 4F, 58, EB, FF, 68, 44, 1B, 55, 00, 6A, FF, 6A, 00, E8, C5, 5A, EB, FF, 8B, D8, 85, DB, 74, 6C, E8, 1A, 5C, EB, FF, 85, C0, 75, 63, A1, 9C, B9, 55, 00, 8B, 00, E8, 8E, ED, F1, FF, A1, 9C, B9, 55, 00, 8B, 00, BA, 54, 1B, 55, 00, E8, 75, E9, F1, FF, 8B, 0D, F4, B7, 55, 00, A1, 9C, B9, 55, 00, 8B, 00, 8B, 15, 50, B2, 54, 00, E8, 7D, ED, F1, FF, 8B, 0D, F8, B7, 55, 00, A1, 9C, B9, 55, 00, 8B, 00, 8B, 15, A8, A4, 54, 00, E8, 65, ED, F1, FF, A1, 9C, B9, 55, 00...
 
[+]

Entropy:
6.2784

Developed / compiled with:
Microsoft Visual C++

Code size:
1.3 MB (1,379,328 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
cwidget

Command:
C:\Program Files\credu\widget\cwidget.exe


Scan cwidget.exe - Powered by Reason Core Security