ncgservice.exe

잉카엔트웍스 NetsyncContentGaurd

Inka Entworks Corp

It runs as a windows Service named “.NCGService”.
Publisher:
INKAENTWORKS INC.  (signed by Inka Entworks Corp)

Product:
잉카엔트웍스 NetsyncContentGaurd

Description:
NCGService

Version:
1.1.0.16

MD5:
a0f848742d24accca9cfeb295aa367f9

SHA-1:
c1c6c29c401051b83a320e7c18f835979641eb88

SHA-256:
9c5ddc33bf578cedfd20f825882ffca78fcab8207e57268444c7d5796bceedec

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/6/2024 7:44:42 AM UTC  (today)

File size:
4.2 MB (4,396,144 bytes)

Product version:
1.1.0.16

Copyright:
INKAENTWORKS INC. Copyright ⓒ 2008-2012

Original file name:
NCGServi.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\ncg\ncgservice.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/23/2013 12:11:11 PM

Valid to:
12/24/2014 12:11:11 PM

Subject:
CN=Inka Entworks Corp, O=Inka Entworks Corp, L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11215587ABF0FCF3687AC9F443EEBB6446A4

File PE Metadata
Compilation timestamp:
9/1/2014 3:58:01 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
49152:FjUaRUgwUDKyEq05mjZbE4uK+ghPUCiZpxQQznIbMpblx7gXU4OsvsIRQ0DyByfe:NbKyE9gJUCeJx/61CHhMM

Entry address:
0x2584BC

Entry point:
48, 83, EC, 28, E8, 3F, 74, 01, 00, 48, 83, C4, 28, E9, 76, FE, FF, FF, CC, CC, 48, 83, EC, 28, E8, 4F, 65, 01, 00, 48, 85, C0, 74, 0A, B9, 16, 00, 00, 00, E8, 38, 68, 01, 00, F6, 05, 55, 7E, 19, 00, 02, 74, 14, 41, B8, 01, 00, 00, 00, BA, 15, 00, 00, 40, 41, 8D, 48, 02, E8, B3, 81, 00, 00, B9, 03, 00, 00, 00, E8, 69, FD, FF, FF, CC, 8B, 05, 2E, 7E, 19, 00, 44, 8B, C2, 23, CA, 41, F7, D0, 44, 23, C0, 44, 0B, C1, 44, 89, 05, 19, 7E, 19, 00, C3, 4C, 8B, C9, 45, 0F, B6, 01, 49, FF, C1, 41, 8D, 40, BF, 83, F8...
 
[+]

Entropy:
6.2728

Code size:
2.8 MB (2,987,520 bytes)

Service
Display name:
.NCGService

Type:
Win32OwnProcess, InteractiveProcess


Scan ncgservice.exe - Powered by Reason Core Security