U2Messenger.exe

U2Messenger

KT Hitel Co., Ltd.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘U2’.
Publisher:
KT Hitel Co., Ltd.  (signed and verified)

Product:
U2Messenger

Version:
1, 0, 0, 418

MD5:
e4c40db41beae87751788b1400a34e66

SHA-1:
992cd816dbededf1f3e4472d7f4ea5ed6278b48f

SHA-256:
52f9de61d5f63d7cc6309cd9f19433a3411548bd43098de317368d11a7721c38

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/30/2024 2:09:23 PM UTC  (today)

File size:
6.1 MB (6,379,000 bytes)

Product version:
1, 0, 0, 418

Copyright:
Copyright (C) 2005

Original file name:
U2Messenger.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\u2\u2messenger.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
1/19/2007 6:33:58 PM

Valid to:
1/25/2008 7:33:42 PM

Subject:
CN="KT Hitel Co., Ltd.", OU=Development Department, O="KT Hitel Co., Ltd.", L=SEOUL, S=GYEONGGI-DO, C=KR

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
123D9E9C2BB59AE061004769D0CD1069

File PE Metadata
Compilation timestamp:
1/10/2008 1:33:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x4A6F2A

Entry point:
55, 8B, EC, 6A, FF, 68, 70, 3B, 94, 00, 68, C2, 70, 8A, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, A8, 92, 91, 00, 59, 83, 0D, FC, 02, A1, 00, FF, 83, 0D, 00, 03, A1, 00, FF, FF, 15, A4, 92, 91, 00, 8B, 0D, 90, B4, A0, 00, 89, 08, FF, 15, A0, 92, 91, 00, 8B, 0D, 8C, B4, A0, 00, 89, 08, A1, 9C, 92, 91, 00, 8B, 00, A3, F8, 02, A1, 00, E8, 34, 02, 00, 00, 39, 1D, F0, 8A, 9E, 00, 75, 0C, 68, CA, 71, 8A, 00, FF, 15, 98, 92...
 
[+]

Entropy:
6.3917

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
5.1 MB (5,337,088 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
U2

Command:
C:\Program Files\u2\u2messenger.exe \background


Scan U2Messenger.exe - Powered by Reason Core Security