fswssupdate.exe

FSWSSUpdate

Finger.Inc

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘FSWS’.
Publisher:
Finger, Inc.  (signed by Finger.Inc)

Product:
FSWSSUpdate

Description:
FSWSS Update

Version:
1.0.0.1

MD5:
5103070f6392234bcd90e83d6fe78bec

SHA-1:
8a692210de866243107cf2aaa51f4c4dda5202f5

SHA-256:
b1cac52cb5cc1067ce1bc52673f1237d08f43f3f1b029608ac1bb62397447627

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/8/2024 9:42:27 AM UTC  (today)

File size:
1.8 MB (1,914,552 bytes)

Product version:
1.0.0.1

Copyright:
Copyright (C) 2016 Finger, Inc. All rights reserved.

Original file name:
FSWSSUpde.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\finger\fswss-t\fswssupdate.exe

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
11/25/2015 9:00:00 AM

Valid to:
10/2/2017 8:59:59 AM

Subject:
CN=Finger.Inc, O=Finger.Inc, L=Yeongdeungpo-gu, S=Seoul, C=KR

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
18ED4E87CF8317BB4F380372E39F1FF9

File PE Metadata
Compilation timestamp:
1/13/2017 2:19:38 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

Entry address:
0x101DD4

Entry point:
E8, 09, A9, 00, 00, E9, 95, FE, FF, FF, 8B, FF, 55, 8B, EC, 53, 8B, 5D, 08, 83, FB, E0, 77, 6F, 56, 57, 83, 3D, 70, 4B, 57, 00, 00, 75, 18, E8, 31, A3, 00, 00, 6A, 1E, E8, 7B, A1, 00, 00, 68, FF, 00, 00, 00, E8, EC, 2C, 00, 00, 59, 59, 85, DB, 74, 04, 8B, C3, EB, 03, 33, C0, 40, 50, 6A, 00, FF, 35, 70, 4B, 57, 00, FF, 15, D0, 62, 52, 00, 8B, F8, 85, FF, 75, 26, 6A, 0C, 5E, 39, 05, 78, 4B, 57, 00, 74, 0D, 53, E8, 4C, A9, 00, 00, 59, 85, C0, 75, A9, EB, 07, E8, 72, 0B, 00, 00, 89, 30, E8, 6B, 0B, 00, 00, 89...
 
[+]

Entropy:
6.3595

Code size:
1.1 MB (1,196,544 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
FSWS

Command:
C:\Program Files\finger\fswss-t\fswssupdate.exe


Scan fswssupdate.exe - Powered by Reason Core Security