WSCHandler.EXE

Trend Micro Titanium

NIPPON TELEGRAPH AND TELEPHONE WEST CORPORATION

Publisher:
Trend Micro Inc.  (signed by NIPPON TELEGRAPH AND TELEPHONE WEST CORPORATION)

Product:
Trend Micro Titanium

Description:
WSCHandler Application

Version:
9.11.0.1155

MD5:
ac7ce8de6f1fab36a7af491fe574d9aa

SHA-1:
7120cbc0977be94dd58d49f43e4a9707f220c523

SHA-256:
d8f8beb023c376ce25e45aea008d0c19304730e7d50ec90e8fef8226901ccc5f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 3:08:51 PM UTC  (today)

File size:
440 KB (450,512 bytes)

Product version:
9.11

Copyright:
Copyright (C) 2015 Trend Micro Incorporated. All rights reserved.

Trademarks:
Copyright (C) Trend Micro Inc.

Original file name:
WSCHandler.EXE

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\tt_setup\ucplugin\c17t1706v0.0.0l1p5889r1o1\wschandler.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/7/2015 9:00:00 AM

Valid to:
9/16/2016 8:59:59 AM

Subject:
CN=NIPPON TELEGRAPH AND TELEPHONE WEST CORPORATION, OU=research and development center, O=NIPPON TELEGRAPH AND TELEPHONE WEST CORPORATION, L=Osaka-shi, S=Osaka, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
23975B62636ED1E24E2AF714F7FD067F

File PE Metadata
Compilation timestamp:
12/17/2015 11:54:45 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
6144:yW10TBgzzNKt1wRes42Jbq7NUxcqnELmQEco8QnJOCpVQQCPMyboVYFQ20P1iJJe:yWQszUQ2bU2z6Qa8o7QRPM4oDMJYH

Entry address:
0x17500

Entry point:
48, 83, EC, 28, E8, B7, 03, 00, 00, 48, 83, C4, 28, E9, F6, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 3B, 0D, F9, BA, 02, 00, 75, 11, 48, C1, C1, 10, 66, F7, C1, FF, FF, 75, 02, F3, C3, 48, C1, C9, 10, E9, F1, 04, 00, 00, CC, 40, 53, 48, 83, EC, 20, 48, 83, 3D, 3A, EC, 02, 00, 00, 75, 36, BA, 08, 00, 00, 00, 8D, 4A, 18, FF, 15, 02, 6F, 01, 00, 48, 8B, C8, 48, 8B, D8, FF, 15, 6E, 6C, 01, 00, 48, 89, 05, 17, EC, 02...
 
[+]

Entropy:
5.9776

Code size:
177.5 KB (181,760 bytes)

Scan WSCHandler.EXE - Powered by Reason Core Security