RCSDeamon.exe

SafePC

NICSTECH CO.,LTD.

Publisher:
NICSTECH Co.  (signed by NICSTECH CO.,LTD.)

Product:
SafePC

Description:
RCSDeamon (remote help app)(A)

Version:
4.0.0.8

MD5:
347ec31b0e6d38414571f39127c1202f

SHA-1:
e423bd96d015d9823427139a3bea6fdc6f2ae26a

SHA-256:
d3e5d16b5be9ad862af6dec3d3683dda4625e0549d119e6830f0ccd3bb9056f5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 9:29:05 AM UTC  (today)

File size:
262.3 KB (268,544 bytes)

Product version:
4.0.0.8

Copyright:
Copyright ⓒ 2001

Original file name:
RCSDeamon.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\windows\nics\rcsdeamon.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/24/2014 9:00:00 AM

Valid to:
5/23/2017 8:59:59 AM

Subject:
CN="NICSTECH CO.,LTD.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="NICSTECH CO.,LTD.", L=Gangseo-gu, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
11F45D67945774D843249DF8342E8FBB

File PE Metadata
Compilation timestamp:
7/11/2014 1:59:53 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
3072:TvzOO3lOl+55dYSvjdUhQtswCBDq9P4lzz6x2OOJ+ySrgmtUEoLwrZtU5BGUVIZW:PSq5eSbdUWtsnDq9PUKP4eJBRk

Entry address:
0x12350

Entry point:
8B, FF, 55, 8B, EC, E8, D6, CF, 00, 00, E8, 11, 00, 00, 00, 5D, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 6A, FE, 68, 58, 70, 43, 00, 68, 90, 5A, 41, 00, 64, A1, 00, 00, 00, 00, 50, 83, C4, 98, 53, 56, 57, A1, 90, A2, 43, 00, 31, 45, F8, 33, C5, 50, 8D, 45, F0, 64, A3, 00, 00, 00, 00, 89, 65, E8, C7, 45, 90, 00, 00, 00, 00, 8D, 45, A0, 50, FF, 15, 7C, E1, 42, 00, 83, 3D, 04, D3, 43, 00, 00, 75, 0E, 6A, 00, 6A, 00, 6A, 01, 6A, 00, FF, 15, 80, E1, 42, 00, E8, 8E, 01...
 
[+]

Entropy:
6.2942

Code size:
179 KB (183,296 bytes)

Windows Firewall Allowed Program
Name:
C:\Windows\Nics\RCSDeamon.exe


Scan RCSDeamon.exe - Powered by Reason Core Security