ncgservice.exe

잉카엔트웍스 NetsyncContentGaurd

Inka Entworks Corp

It runs as a windows Service named “.NCGService”.
Publisher:
INKAENTWORKS INC.  (signed by Inka Entworks Corp)

Product:
잉카엔트웍스 NetsyncContentGaurd

Description:
NCGService

Version:
1, 1, 0, 9

MD5:
e284b6ee59bc5f9d4e6966c887ff573d

SHA-1:
10e649be2faf87b06b186b052f83b84aa27474b2

SHA-256:
5375833d752a6c742f2f63f43146caa2154ab07cc3afeabef6f691b3ffeccb0e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 5:26:29 PM UTC  (today)

File size:
231.9 KB (237,440 bytes)

Product version:
1, 1, 0, 9

Copyright:
INKAENTWORKS INC. Copyright ⓒ 2008-2010

Original file name:
NCGServi.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ncg\ncgservice.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/29/2010 3:28:01 PM

Valid to:
6/29/2011 3:28:01 PM

Subject:
E=suhwan@inka.co.kr, CN=Inka Entworks Corp, O=Inka Entworks Corp, C=KR

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012982986ADF

File PE Metadata
Compilation timestamp:
4/5/2011 3:02:37 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
3072:eBI1sF8Ut9LfNg/yuOdD/ZrIwfTd7t6AoaOHdRB1CBJ3WIHOu7frf+7YCKRHWPN7:oF9LWquOnfTd7ItaGCfVOu7+KUPH1

Entry address:
0x18C08

Entry point:
E8, 40, 8B, 00, 00, E9, 40, FE, FF, FF, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 10, 5B, 43, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 10, 5B, 43, 00, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B...
 
[+]

Entropy:
6.6121

Code size:
160 KB (163,840 bytes)

Service
Display name:
.NCGService

Type:
Win32OwnProcess, InteractiveProcess


Scan ncgservice.exe - Powered by Reason Core Security