installwebhardexplore.exe

InstallWebHard 응용 프로그램

LG DACOM Corp.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘WebhardExplorePlus’.
Publisher:
LG DACOM Corp.  (signed and verified)

Product:
InstallWebHard 응용 프로그램

Description:
InstallWebHard MFC 응용 프로그램

Version:
1, 0, 2, 56

MD5:
9facfacbbdd877995261ca327302cafb

SHA-1:
724d0ca9bd6df802c115b0833fdd219bd07af749

SHA-256:
3a33e189ace2f80f1cdbfc7c020c34ae8ded9aecab067d8f42c38ff64dc80380

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 12:07:55 AM UTC  (today)

File size:
177.4 KB (181,632 bytes)

Product version:
1, 0, 2, 56

Copyright:
Copyright (C) 2006

Original file name:
InstallWebHard.EXE

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\webhard\webhardexploreplus\installwebhardexplore.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/21/2009 9:00:00 AM

Valid to:
10/12/2010 8:59:59 AM

Subject:
CN=LG DACOM Corp., OU=Webhard Business Team, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=LG DACOM Corp., L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
12E848289EAB1052534BDEF71B9DD311

File PE Metadata
Compilation timestamp:
2/9/2010 5:27:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:OYiLRaqCFvvLP5XuzYXEIWg6MWwtzvWuAGJyGy1yg8aAVLUN:OBLRVCFvThDl6exVJyB1Z8aAVLUN

Entry address:
0x10242

Entry point:
55, 8B, EC, 6A, FF, 68, 50, 31, 41, 00, 68, CE, 03, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, 3C, 25, 41, 00, 59, 83, 0D, C8, 69, 41, 00, FF, 83, 0D, CC, 69, 41, 00, FF, FF, 15, 40, 25, 41, 00, 8B, 0D, BC, 69, 41, 00, 89, 08, FF, 15, 44, 25, 41, 00, 8B, 0D, B8, 69, 41, 00, 89, 08, A1, 48, 25, 41, 00, 8B, 00, A3, C4, 69, 41, 00, E8, 1C, 01, 00, 00, 39, 1D, 48, 68, 41, 00, 75, 0C, 68, CA, 03, 41, 00, FF, 15, 4C, 25...
 
[+]

Entropy:
5.3182

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
68 KB (69,632 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
WebhardExplorePlus

Command:
"C:\Program Files\webhard\webhardexploreplus\installwebhardexplore.exe" \boot


Scan installwebhardexplore.exe - Powered by Reason Core Security