K7TSecurity.EXE

K7Security Suite of Products

K7 Computing Pvt Ltd

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘K7TSStart’.
Publisher:
K7 Computing Pvt Ltd  (signed and verified)

Product:
K7Security Suite of Products

Description:
K7 User Agent

Version:
12, 0, 2, 35

MD5:
1bacb0a5329860046dd6c27d68280404

SHA-1:
5a6f0263f82b402fd3a568bcad1344cb5ae07fc0

SHA-256:
493b2cd5609fcb6f7ac613323a6752199fa7b5f0cea90b2c397d85ec24284b9f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 3:39:01 AM UTC  (today)

File size:
160 KB (163,864 bytes)

Product version:
12, 0, 0, 0

Copyright:
Copyright (C) 2003-2013 K7 Computing Pvt Ltd

Original file name:
K7TSecurity.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\k7 computing\k7tsecurity\k7tsecurity.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/7/2012 5:00:00 PM

Valid to:
11/7/2015 3:59:59 PM

Subject:
CN=K7 Computing Pvt Ltd, OU=Security, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=K7 Computing Pvt Ltd, L=Chennai, S=TamilNadu, C=IN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
093F6320F02A758F911AAA408C245B99

File PE Metadata
Compilation timestamp:
3/29/2013 3:54:43 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:b6TAjqxitGOD5E7a2vZWYe/3hC/cRPed5c5hT34:bkwqxit3DC7UfhRled5iTo

Entry address:
0x1245C

Entry point:
E8, F0, 55, 00, 00, E9, 78, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9, 00, 00, FF, 00, 74, 13, A9, 00, 00, 00, FF, 74, 02, EB, CD, 8D, 41, FF, 8B, 4C, 24, 04, 2B, C1...
 
[+]

Entropy:
6.5176

Code size:
115 KB (117,760 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
K7TSStart

Command:
C:\Program Files\k7 computing\k7tsecurity\k7tsecurity.exe


Scan K7TSecurity.EXE - Powered by Reason Core Security