NSSOTrayAuthManager.exe

NETS*Single Sign-On V5.1.0

NETS, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NSSOAuthManager’.
Publisher:
NETS  (signed by NETS, Inc.)

Product:
NETS*Single Sign-On V5.1.0

Description:
Tray Appcation SSO Manager for NETS*SSO

Version:
5.1.0.2

MD5:
0769f0c41f848f5c6c23f68133dca767

SHA-1:
0cac19fa5b4766f0e5e51d6f01d9758b025d1498

SHA-256:
1c22b21afb991bd3bc2553775d7061ad4c32cd886d39dbd226c8f5a20051c006

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 6:09:10 PM UTC  (today)

File size:
204.6 KB (209,520 bytes)

Product version:
5.1.0.2

Copyright:
(c) NETS. All rights reserved.

Original file name:
NSSOTrayAuthManager.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
11/1/2012 6:00:00 PM

Valid to:
1/1/2015 5:59:59 PM

Subject:
CN="NETS, Inc.", O="NETS, Inc.", L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
325621672317B547A22B513E90F872D4

File PE Metadata
Compilation timestamp:
4/30/2014 1:53:21 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
1536:vs6Xo2ZTJN4dRZGUsyRbLZ5T/Es5y0ubcxlps7Incy7nsWjcdFeKwy51SGmkARx6:vHlN+GE8wpaIl7I0y5xmprLpuyABPx

Entry address:
0xC45C

Entry point:
E8, 31, 61, 00, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, E8, 0F, 00, 00, 00, 83, 7D, 08, 00, 74, 05, E8, 27, 6D, 00, 00, DB, E2, 5D, C3, B8, 14, 27, 41, 00, A3, 60, 46, 42, 00, C7, 05, 64, 46, 42, 00, F4, 2F, 41, 00, C7, 05, 68, 46, 42, 00, 83, 30, 41, 00, C7, 05, 6C, 46, 42, 00, DB, 30, 41, 00, C7, 05, 70, 46, 42, 00, 5E, 31, 41, 00, A3, 74, 46, 42, 00, C7, 05, 78, 46, 42, 00, 35, 27, 41, 00, C7, 05, 7C, 46, 42, 00, 9B, 30, 41, 00, C7, 05, 80, 46, 42, 00, 05, 30, 41, 00, C7, 05, 84, 46, 42, 00, EC, 30, 41, 00...
 
[+]

Entropy:
6.2129

Code size:
97 KB (99,328 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NSSOAuthManager

Command:
C:\nets\nssotrayauthmanager\x86\nssotrayauthmanager.exe


Scan NSSOTrayAuthManager.exe - Powered by Reason Core Security