ncgservice.exe

잉카엔트웍스 NetsyncContentGaurd

Inka Entworks Corp

It runs as a windows Service named “.NCGService”.
Publisher:
INKAENTWORKS INC.  (signed by Inka Entworks Corp)

Product:
잉카엔트웍스 NetsyncContentGaurd

Description:
NCGService

Version:
1, 1, 0, 11

MD5:
ac038d399992d9ed784f01fd3fd55f6b

SHA-1:
b2eb1425cc13cb3b901f82d81d6c912548662cea

SHA-256:
2013b5a8bc6f07eb497088ff028d815df67494dd448ca9bdc1efa2a8b0baf665

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/23/2024 12:49:39 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Evo-gen [Susp]
160215-2

File size:
379 KB (388,080 bytes)

Product version:
1, 1, 0, 11

Copyright:
INKAENTWORKS INC. Copyright ⓒ 2008-2010

Original file name:
NCGServi.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ncg\ncgservice.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/12/2011 6:33:59 PM

Valid to:
8/12/2012 6:33:59 PM

Subject:
CN=Inka Entworks Corp, OU=DevTeam, O=Inka Entworks Corp, L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121496B8D41EE3FF25E57806F33B55DF261

File PE Metadata
Compilation timestamp:
9/8/2011 10:23:06 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
6144:1fNcpJyQaCCqE/pq2CzAaaCw4V5G1dS1tiUhYALyVTB:1EJ6/szAbCw47G1dS+UhQB

Entry address:
0x1912C

Entry point:
E8, 92, 9F, 00, 00, E9, 40, FE, FF, FF, 8B, 44, 24, 04, 66, 8B, 08, 40, 40, 66, 85, C9, 75, F6, 2B, 44, 24, 04, D1, F8, 48, C3, 8B, 4C, 24, 04, 53, 56, 57, 33, FF, 3B, CF, 74, 08, 8B, 5C, 24, 14, 3B, DF, 77, 1B, E8, B4, E8, FF, FF, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, 5A, E2, FF, FF, 83, C4, 14, 8B, C6, EB, 38, 8B, 74, 24, 18, 3B, F7, 75, 05, 66, 89, 39, EB, D8, 8B, D1, 0F, B7, 06, 66, 89, 02, 42, 42, 46, 46, 66, 3B, C7, 74, 03, 4B, 75, EE, 3B, DF, 75, 11, 66, 89, 39, E8, 71, E8, FF, FF, 6A, 22, 59...
 
[+]

Entropy:
6.4980

Code size:
288 KB (294,912 bytes)

Service
Display name:
.NCGService

Type:
Win32OwnProcess, InteractiveProcess


Scan ncgservice.exe - Powered by Reason Core Security