EmbassySecurityCheck.exe

Embassy Security Center

Wave Systems Corp.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘EmbassySecurityCheck’.
Publisher:
Wave Systems Corp.  (signed and verified)

Product:
Embassy Security Center

Description:
ESC Embassy Security Check

Version:
03.09.00.113

MD5:
e95e5942926aeebb10d8e067c985ee0c

SHA-1:
cadcb7f479477337f1d9910806a67634a2edfe6b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 4:04:14 PM UTC  (today)

File size:
93.3 KB (95,544 bytes)

Product version:
03.09.00.113

Copyright:
©2009 Wave Systems Corp. All rights reserved

Original file name:
EmbassySecurityCheck.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\wave systems corp\embassy security setup\embassysecuritycheck.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/4/2008 1:00:00 AM

Valid to:
11/5/2009 12:59:59 AM

Subject:
CN=Wave Systems Corp., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Wave Systems Corp., L=Lee, S=Massachusetts, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
60E479E6221A9B003570D94686F698C1

File PE Metadata
Compilation timestamp:
7/10/2009 3:36:51 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:TLB/DhbMIdXbYiCnQiQO5M5aSMgUM8qRMspnttfZzCs7vt6U7x7s0gKnBH+zsuyj:TL5VdrGnQtO54aSMgUM8qRMspnttfZzn

Entry address:
0x758D

Entry point:
E8, A2, 03, 00, 00, E9, 36, FD, FF, FF, CC, 68, 1E, 71, 40, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 70, C1, 40, 00, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 38, C4, 40, 00, 89, 0D, 34, C4, 40, 00, 89, 15, 30, C4, 40, 00, 89, 1D...
 
[+]

Code size:
32 KB (32,768 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
EmbassySecurityCheck

Command:
"C:\Program Files\wave systems corp\embassy security setup\embassysecuritycheck.exe"


Scan EmbassySecurityCheck.exe - Powered by Reason Core Security