wgengine.exe

WinGuard Pro - Program Locking Engine

Chris Homer

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘WGP’. This is installed with WinGuard Pro 2014.
Publisher:
WinGuard Pro  (signed by Chris Homer)

Product:
WinGuard Pro - Program Locking Engine

Version:
8.2.0.0

MD5:
41a0fb5320fb7463be83f2f826986f82

SHA-1:
dc69e38798c68396762504d8ed746c350a4fcbb1

SHA-256:
3355e3b08d368f8a9f50df436133979ee2627ab35c0b902f9f68d85d5df54980

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 11:03:35 AM UTC  (today)

File size:
50.1 KB (51,272 bytes)

Product version:
8.2.0.0

Copyright:
Copyright © 2014

Trademarks:
All Rights Reserved.

Original file name:
wgengine.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\winguard pro\wgengine.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/8/2013 8:00:00 PM

Valid to:
5/9/2014 7:59:59 PM

Subject:
CN=Chris Homer, O=Chris Homer, STREET=11 Waterside, L=Uxbridge, S=Middlesex, PostalCode=UB8 2LG, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008328E66981831B2C021616D0D9E22EDC

File PE Metadata
Compilation timestamp:
11/9/2013 1:46:39 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:fadE/ydgB1tL1qceYFc5Ge8B4h0isUtrFOfOPJNIzJSxhlg:fTXBldeacSParIWDoihK

Entry address:
0x80FE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
4.5910

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
28 KB (28,672 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
WGP

Command:
C:\Program Files\winguard pro\wgengine.exe


The file wgengine.exe has been discovered within the following program.

WinGuard Pro 2014  by WinGuard Pro Ltd
About 3% of users remove it
 
Powered by Should I Remove It?

Scan wgengine.exe - Powered by Reason Core Security