EmbassySecurityCheck.exe

Embassy Security Center

Wave Systems Corp.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘EmbassySecurityCheck’.
Publisher:
Wave Systems Corp.  (signed and verified)

Product:
Embassy Security Center

Description:
ESC Embassy Security Check

Version:
04.00.00.118

MD5:
ceb5f7e142cd23a94db3ffb942b5be91

SHA-1:
d18f8357d92f5aad62de17bac096a10f193d6071

SHA-256:
60f07747a4dcd6e5fa030a6446cbb10b2324c492b8728c2764626afa9563e680

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 4:03:15 PM UTC  (today)

File size:
93.4 KB (95,616 bytes)

Product version:
04.00.00.118

Copyright:
©2010 Wave Systems Corp. All rights reserved

Original file name:
EmbassySecurityCheck.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\wave systems corp\embassy security setup\embassysecuritycheck.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/5/2009 1:00:00 AM

Valid to:
11/6/2010 12:59:59 AM

Subject:
CN=Wave Systems Corp., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Wave Systems Corp., L=Lee, S=Massachusetts, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
336AC3DBB500ABD45835543A07FC2370

File PE Metadata
Compilation timestamp:
6/23/2010 10:34:25 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:nfx/jhKDMYdnhnijB+MOEkSaSMgUM8CRMEpnttfZzCs7vt6U7x7s0gKnBH+zsuyD:nfpodhYBFOEfaSMgUM8CRMEpnttfZzC8

Entry address:
0x759D

Entry point:
E8, A2, 03, 00, 00, E9, 36, FD, FF, FF, CC, 68, 2E, 71, 40, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 70, C1, 40, 00, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 38, C4, 40, 00, 89, 0D, 34, C4, 40, 00, 89, 15, 30, C4, 40, 00, 89, 1D...
 
[+]

Code size:
32 KB (32,768 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
EmbassySecurityCheck

Command:
"C:\Program Files\wave systems corp\embassy security setup\embassysecuritycheck.exe"


Scan EmbassySecurityCheck.exe - Powered by Reason Core Security