FCToolW.exe

フレッツ接続ツール

Nippon Telegraph and Telephone West corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘FCTLoginWatcher’.
Publisher:
西日本電信電話株式会社  (signed by Nippon Telegraph and Telephone West corporation)

Product:
フレッツ接続ツール

Description:
フレッツ接続ツール コマンド ライン インターフェース (GUI版)

Version:
1.0.0.1

MD5:
292c693c09b802e266baaa4b7dd9566c

SHA-1:
f787f9efd323dd4d7ce10a01fbe993f6503d5296

SHA-256:
f513b5c20b2d92dafc2641296322744f07f37f8efcc89a3b36323519ad7369a6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 7:38:14 PM UTC  (today)

File size:
677.4 KB (693,680 bytes)

Product version:
1.0.0.0

Copyright:
(C) 西日本電信電話株式会社 All rights reserved.

Original file name:
FCToolW.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\nttw\fletsconnectiontool\fctoolw.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/16/2007 9:00:00 AM

Valid to:
1/17/2008 8:59:59 AM

Subject:
CN=Nippon Telegraph and Telephone West corporation, OU=Broadband Application Service Department, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Nippon Telegraph and Telephone West corporation, L=Osaka-shi/Chuo-ku, S=Osaka-fu, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1022D5EF3D3A74ACC2B0B7E3957A5AF4

File PE Metadata
Compilation timestamp:
9/26/2007 2:04:36 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
3072:xBKF4jqjOkWGSyPJLlo4PVOq93NIeeBH7yOAqN1y1yyyyyyywyyyyyyyuV4S8DDa:M4jqjOk7fMvQ3qGlCPt4+B4H

Entry address:
0xBB68

Entry point:
6A, 60, 68, C8, 53, 41, 00, E8, 2C, 02, 00, 00, BF, 94, 00, 00, 00, 8B, C7, E8, D0, F5, FF, FF, 89, 65, E8, 8B, F4, 89, 3E, 56, FF, 15, B4, 41, 41, 00, 8B, 4E, 10, 89, 0D, 54, 94, 41, 00, 8B, 46, 04, A3, 60, 94, 41, 00, 8B, 56, 08, 89, 15, 64, 94, 41, 00, 8B, 76, 0C, 81, E6, FF, 7F, 00, 00, 89, 35, 58, 94, 41, 00, 83, F9, 02, 74, 0C, 81, CE, 00, 80, 00, 00, 89, 35, 58, 94, 41, 00, C1, E0, 08, 03, C2, A3, 5C, 94, 41, 00, 33, F6, 56, 8B, 3D, C8, 41, 41, 00, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03...
 
[+]

Entropy:
4.9883

Developed / compiled with:
Microsoft Visual C++ v7.0

Code size:
76 KB (77,824 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
FCTLoginWatcher

Command:
C:\Program Files1\nttw\fletsc~1\fctoolw.exe -init -run


Scan FCToolW.exe - Powered by Reason Core Security