TcNcI.exe

Beckhoff GmbH TcNcI

Beckhoff Automation GmbH

It runs as a separate (within the context of its own process) windows Service named “TwinCAT Nc Interpreter”.
Publisher:
Beckhoff Automation GmbH  (signed and verified)

Product:
Beckhoff GmbH TcNcI

Description:
TcNcI

Version:
2, 11, 0, 3025

MD5:
dd25441c586e534736739c5e4e9174e4

SHA-1:
058f2dc43b3aee7ba62533360c385a23e2135f37

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 8:09:24 AM UTC  (today)

File size:
533 KB (545,840 bytes)

Product version:
2,11,2245,0

Copyright:
Copyright © 1998 - 2014

Original file name:
TcNcI.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/19/2013 3:14:35 AM

Valid to:
3/19/2017 4:14:35 AM

Subject:
E=info@beckhoff.com, CN=Beckhoff Automation GmbH, O=Beckhoff Automation GmbH, L=Verl, S=NRW, C=DE

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121BBC574B28F2A871F0F8F4B9FB21DA509

File PE Metadata
Compilation timestamp:
9/23/2014 2:05:28 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
12288:2G+ZHbJ2eUvzRggHp51mWXjy/P/7/ZABlRVuDZL0/A8SZktdXYqi8QOOxu:2y8ZL0i10dR

Entry address:
0x60A30

Entry point:
E8, 19, 05, 00, 00, E9, 40, FD, FF, FF, FF, 25, F0, A1, 46, 00, FF, 25, F4, A1, 46, 00, FF, 25, F8, A1, 46, 00, FF, 25, FC, A1, 46, 00, FF, 25, B8, A1, 46, 00, FF, 25, D0, A0, 46, 00, FF, 25, D4, A0, 46, 00, FF, 25, D8, A0, 46, 00, FF, 25, DC, A0, 46, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, C0, 5C, 48, 00, 89, 0D, BC, 5C, 48, 00, 89, 15, B8, 5C, 48, 00, 89, 1D, B4, 5C, 48, 00, 89, 35, B0, 5C, 48, 00, 89, 3D, AC, 5C, 48, 00, 66, 8C, 15, D8, 5C, 48, 00, 66, 8C, 0D, CC, 5C, 48, 00, 66, 8C, 1D, A8...
 
[+]

Entropy:
6.4385

Code size:
418 KB (428,032 bytes)

Service
Display name:
TwinCAT Nc Interpreter

Service name:
TcNcI

Type:
Win32OwnProcess

Group:
Base


Scan TcNcI.exe - Powered by Reason Core Security