wmcsystem.exe

wmcSystem

Sun&Moon Rise

It runs as a separate (within the context of its own process) windows Service named “Win-Win Commander”.
Publisher:
TODO: <公司名稱>  (signed by Sun&Moon Rise)

Product:
wmcSystem

Version:
0.0.0.0

MD5:
359ac05193b6458c9d544faba85bf065

SHA-1:
04ef15560f4834d7397f407aa2eb265039eed200

SHA-256:
ee66e3dcefc7d80beb427dc76cc6914b6447f1607fd698146a331ccc095cd7ea

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/3/2024 7:13:17 AM UTC  (today)

File size:
1.2 MB (1,309,424 bytes)

Product version:
7.17.0123

Copyright:
Copyright (C) 2016 Sun & Moon Rise Co., Ltd.

Original file name:
wmcSyste.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ww2010cf\wmcsystem.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/3/2014 8:00:00 AM

Valid to:
10/3/2017 7:59:59 AM

Subject:
CN=Sun&Moon Rise, O=Sun&Moon Rise, L=Taipei, S=Taiwan, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
73CE72C594E7ED094635088F9B096945

File PE Metadata
Compilation timestamp:
1/24/2017 2:12:28 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0xE1883

Entry point:
E8, DD, 74, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 56, E8, 6B, 75, 00, 00, 59, 83, F8, 05, 0F, 82, 88, 00, 00, 00, 0F, B7, 06, 83, F8, 5C, 74, 05, 83, F8, 2F, 75, 7B, 0F, B7, 46, 02, 83, F8, 5C, 74, 05, 83, F8, 2F, 75, 6D, 0F, B7, 46, 04, 83, F8, 5C, 74, 64, 83, F8, 2F, 74, 5F, 8D, 46, 06, 0F, B7, 08, 33, D2, 66, 3B, CA, 74, 52, 66, 83, F9, 5C, 74, 11, 66, 83, F9, 2F, 74, 0B, 83, C0, 02, 0F, B7, 08, 66, 3B, CA, 75, E9, 66, 39, 10, 74, 36, 83, C0, 02, 66, 39, 10, 74, 2E, 0F, B7, 08, 66, 3B, CA, 74, 22, 66, 83...
 
[+]

Entropy:
6.6061

Code size:
1000.5 KB (1,024,512 bytes)

Service
Display name:
Win-Win Commander

Service name:
Win-Win

Type:
Win32OwnProcess


Scan wmcsystem.exe - Powered by Reason Core Security