cyberstation.exe

Cyber Station Manager (client side)

VNG Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Cyber Station Manager’.
Publisher:
VinaGame JSC  (signed by VNG Corporation)

Product:
Cyber Station Manager (client side)

Description:
Cyber Station Manager Application

Version:
5, 3, 1, 1

MD5:
3007ee00908cf2680fbeed5c3b9a8a0e

SHA-1:
0e112206f92e389044601918286680c0c1ab33f6

SHA-256:
9bc4c4d112a8fd9963a1d07c8e5b5e4656c233e7be98bdfe0fed5c17c05ed914

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 2:30:00 AM UTC  (today)

File size:
523.8 KB (536,360 bytes)

Product version:
5, 3, 1, 1

Copyright:
Copyright (C) 2006

Original file name:
CyberCafe.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\csmclient\cyberstation.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/13/2012 7:00:00 AM

Valid to:
8/14/2015 6:59:59 AM

Subject:
CN=VNG Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=VNG Corporation, L=Ho Chi Minh, S=Vietnam, C=VN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1E2E72EFA5CC0D5289DFF53DA87A35EB

File PE Metadata
Compilation timestamp:
6/12/2013 2:06:26 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:eiHPIiImRQMHZ0qMdBSHR8OMOLsQpoCBxiCxPVTdaW6g/IcKczYbAn0N:egPIiIfMCeHR8jSVPVwWKGxn0N

Entry address:
0x373D6

Entry point:
E8, 0D, 05, 00, 00, E9, 37, FD, FF, FF, 3B, 0D, 28, 40, 45, 00, 75, 02, F3, C3, E9, 8F, 05, 00, 00, 8B, FF, 55, 8B, EC, F6, 45, 08, 02, 57, 8B, F9, 74, 25, 56, 68, B4, 7A, 43, 00, 8D, 77, FC, FF, 36, 6A, 0C, 57, E8, AA, 01, 00, 00, F6, 45, 08, 01, 74, 07, 56, E8, 2E, F4, FF, FF, 59, 8B, C6, 5E, EB, 14, E8, 8D, 06, 00, 00, F6, 45, 08, 01, 74, 07, 57, E8, 17, F4, FF, FF, 59, 8B, C7, 5F, 5D, C2, 04, 00, 6A, 14, 68, 78, C2, 44, 00, E8, F5, 03, 00, 00, FF, 35, EC, 91, 45, 00, 8B, 35, 4C, E3, 43, 00, FF, D6, 59...
 
[+]

Entropy:
6.3996

Code size:
501.5 KB (513,536 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Cyber Station Manager

Command:
C:\Program Files\csmclient\cyberstation.exe


Scan cyberstation.exe - Powered by Reason Core Security