OsMonitorServer.exe

Monitoring Server

Nanjing Wangya Computer Co.,Ltd.

It runs as a scheduled task under the Windows Task Scheduler triggered to execute each time a user logs in.
Publisher:
WangYa   (signed by Nanjing Wangya Computer Co.,Ltd.)

Product:
Monitoring Server

Version:
10.00.0052

MD5:
77861f31eb055339834ae8ffc9121ce7

SHA-1:
f7667dc878fb5278eabcc7e0654c8158d15a2c75

SHA-256:
8ee21b00be4c11637a096781ae597f10bd73ec1b2553afc365d3738ff306c61a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/26/2024 4:26:24 PM UTC  (today)

File size:
823.1 KB (842,864 bytes)

Product version:
10.00.0052

Copyright:
WangY

Trademarks:
Monitoring

Original file name:
OsMonitorServer.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\osmonitor server\osmonitorserver.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
12/26/2013 8:00:00 AM

Valid to:
2/25/2016 7:59:59 AM

Subject:
CN="Nanjing Wangya Computer Co.,Ltd.", OU=Development Department, O="Nanjing Wangya Computer Co.,Ltd.", L=NanJing, S=JiangSu, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
1AC0074C3A632904593B34FF87DAF1F8

File PE Metadata
Compilation timestamp:
12/22/2015 4:53:05 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:DbsjR9E5TTXx8uK/cRgOnmq9g6MgIQ/Hdrde:DbsYscOU7m6Eyrde

Entry address:
0x1000

Entry point:
68, 01, 80, 5B, 00, E8, 01, 00, 00, 00, C3, C3, B8, 08, FF, 32, 0D, A9, 8F, 84, B7, C1, E5, 55, F4, 51, EB, 00, 8B, 82, DD, EF, 87, 2A, 81, 6A, C0, B2, C5, 2D, 6E, CE, A9, C3, E5, 98, AD, 8E, DE, 4D, 62, 8A, 10, 66, 1C, 4F, DD, B0, F9, 91, 52, B0, 6E, 4D, F7, C4, 9F, 5C, 8C, 3F, CE, 72, 2D, 74, 85, BB, 28, 7F, 6C, 6B, 1A, 1B, 59, 6E, C1, 41, 2B, 69, A0, 1A, A1, E4, 20, B8, 04, 95, 41, E3, 6A, EC, 74, 00, 5D, D6, DB, 23, 76, CA, AF, 4D, A9, 86, 3F, DE, 9C, F5, EF, 54, EC, 31, 75, 3C, 8A, F9, E4, 41, 1A, B6...
 
[+]

Entropy:
7.9712

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
1.6 MB (1,703,936 bytes)

Scheduled Task
Task name:
Monitoring-Server-WY

Trigger:
Logon (Runs on logon)


Scan OsMonitorServer.exe - Powered by Reason Core Security