n2svc.exe

NoAD25

MirageWorks Inc.

It runs as a separate (within the context of its own process) windows Service named “NoAD2+ Desktop Security Service”.
Publisher:
MirageWorks  (signed by MirageWorks Inc.)

Product:
NoAD25

Description:
NoAD2+ Desktop Security Service

Version:
2, 11, 0, 29697

MD5:
f82cc9ea552ec342f1c70a12fec074c6

SHA-1:
ac08210552b3f59bff89b0fc901411a1f1d8b06c

SHA-256:
b49eb6925092e8b4ea074882f2a51af14e6d14abf5660dd8152c23c80a5026c6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 2:20:56 AM UTC  (today)

File size:
652.6 KB (668,288 bytes)

Product version:
2, 11, 0, 29697

Copyright:
Copyright (c) 2006-2011 MirageWorks Inc., All rights reserved.

Original file name:
n2svc.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\noad2\n2svc.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
11/2/2011 9:00:00 AM

Valid to:
11/2/2012 8:59:59 AM

Subject:
CN=MirageWorks Inc., OU=marketing, O=MirageWorks Inc., L=Mapo-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
01FFC3CE1D7C18F4FD6646EB3CF125D7

File PE Metadata
Compilation timestamp:
1/8/2012 12:39:25 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:mEunZvNlR77J+VhXTpNHrRBVPUG10H6dwvYk:2NlR778VhXTp9RBV8Y09Y

Entry address:
0x802AF

Entry point:
E8, 24, 06, 00, 00, E9, 37, FD, FF, FF, CC, FF, 25, 40, 71, 48, 00, FF, 25, 44, 71, 48, 00, FF, 25, 48, 71, 48, 00, FF, 25, 4C, 71, 48, 00, FF, 25, 50, 71, 48, 00, FF, 25, 54, 71, 48, 00, FF, 25, 58, 71, 48, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 88, 28, 4A, 00, 89, 0D, 84, 28, 4A, 00, 89, 15, 80, 28, 4A, 00, 89, 1D, 7C, 28, 4A, 00, 89, 35, 78, 28, 4A, 00, 89, 3D, 74, 28, 4A, 00, 66, 8C, 15, A0, 28, 4A, 00, 66, 8C, 0D, 94, 28, 4A, 00, 66, 8C, 1D, 70, 28, 4A, 00, 66, 8C, 05, 6C, 28, 4A, 00, 66...
 
[+]

Entropy:
6.5555

Code size:
534.5 KB (547,328 bytes)

Service
Display name:
NoAD2+ Desktop Security Service

Service name:
N2SVC

Type:
Win32OwnProcess


Scan n2svc.exe - Powered by Reason Core Security