f8f4823becb870a306908d83d4f652df8011ed23

VirusChaser

SGA Co.,LTD

Publisher:
Security Global Alliance  (signed by SGA Co.,LTD)

Product:
VirusChaser

Description:
VirusChaser White List Engine

Version:
8.0.12180.1005

MD5:
2453cc9ec8d8cffe7211eb11be5f9a6d

SHA-1:
f8f4823becb870a306908d83d4f652df8011ed23

SHA-256:
665c56d057adc36691c7a7697b48b3332d080bb02efbc164600a6247f9b109fe

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 3:10:17 AM UTC  (today)

File size:
2.1 MB (2,240,568 bytes)

Product version:
8.0.12180.1005

Copyright:
Security Global Alliance. All rights reserved.

Original file name:
wecore.dll

Common path:
C:\users\{user}\appdata\roaming\sga\vc\f8f4823becb870a306908d83d4f652df8011ed23

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/2/2012 9:00:00 AM

Valid to:
11/2/2014 8:59:59 AM

Subject:
CN="SGA Co.,LTD", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="SGA Co.,LTD", L=Seocho-gu, S=SEOUL, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
568D28983641D518F219F71AC97956D5

File PE Metadata
Compilation timestamp:
2/5/2014 3:50:59 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:82/4dGX35kb2xVO6SzbZ1+JKJ0Itb0t+fa2D/wD9AUA2Nuy:8AN5kiO6V2jwNyy

Entry address:
0x145B50

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, 57, CA, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, A7, FE, FF, FF, CC, CC, CC, 48, 89, 5C, 24, 10, 48, 89, 6C, 24, 18, 48, 89, 74, 24, 20, 57, 41, 54, 41, 55, 41, 56, 41, 57, 48, 83, EC, 20, 49, 63, 78, 0C, 4C, 8B, F9, 49, 8B, C8, 49, 8B, E9, 4D, 8B, E8, 4C, 8B, F2, E8, 44, CB, 00, 00, 4D, 8B, 17, 4C, 89, 55, 00, 44, 8B, E0, 85, FF...
 
[+]

Entropy:
6.2052

Code size:
1.4 MB (1,483,264 bytes)

Scan f8f4823becb870a306908d83d4f652df8011ed23 - Powered by Reason Core Security