OsMonitorServer.exe

Monitoring Server

Nanjing Wangya Computer Co.,Ltd.

It runs as a scheduled task under the Windows Task Scheduler triggered to execute each time a user logs in.
Publisher:
WangYa   (signed by Nanjing Wangya Computer Co.,Ltd.)

Product:
Monitoring Server

Version:
10.00.0050

MD5:
a5f844eb3d75b007aaabb06a9d295880

SHA-1:
4404671b291de9854c342497f2e6c96302b49cea

SHA-256:
8f1a2de34fec2f08be9833a966e2d178779d08d63bf265a78f0ab7ad5eb09dac

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/19/2024 1:22:44 AM UTC  (today)

File size:
821.1 KB (840,816 bytes)

Product version:
10.00.0050

Copyright:
WangY

Trademarks:
Monitoring

Original file name:
OsMonitorServer.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
Thawte, Inc.

Valid from:
12/26/2013 8:00:00 AM

Valid to:
2/25/2016 7:59:59 AM

Subject:
CN="Nanjing Wangya Computer Co.,Ltd.", OU=Development Department, O="Nanjing Wangya Computer Co.,Ltd.", L=NanJing, S=JiangSu, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
1AC0074C3A632904593B34FF87DAF1F8

File PE Metadata
Compilation timestamp:
11/17/2015 4:49:14 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:7Hd/E/qNlaNT4OApK/cRgOnmq9g6OB36rKX6Q:rBGwlaNT1AqcOU7m6WlD

Entry address:
0x1000

Entry point:
68, 01, 70, 5B, 00, E8, 01, 00, 00, 00, C3, C3, B8, 18, FF, 32, 0D, B6, 36, 95, 75, 66, 80, 42, 1E, DB, 91, 49, C8, BD, 8F, A1, 4B, A2, A3, 69, CD, D6, 63, BF, 62, 5C, E3, CC, 77, 53, D1, 37, DB, D6, FF, 0F, 25, 88, EB, A7, 56, 7A, A3, E6, 59, 34, 87, FD, E4, 5F, 8B, 0F, F4, E2, 8F, B9, C5, 08, CA, 90, 8D, 8D, B4, FA, 1A, CD, 39, 9D, CB, BD, 4F, 45, 13, CD, E2, 9A, 07, DD, FD, 37, 43, CF, 0C, 89, 39, C8, BD, AC, 14, B8, CC, 44, AC, 40, 55, B7, CF, 34, 24, D6, 78, 09, 0A, 98, F8, D2, C6, FA, 4B, 6C, 0F, CB...
 
[+]

Entropy:
7.9712

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
1.6 MB (1,699,840 bytes)

Scheduled Task
Task name:
Monitoring-Server-WY

Trigger:
Logon (Runs on logon)


Scan OsMonitorServer.exe - Powered by Reason Core Security