xsg32.exe

XIGNCODE: xsg32.exe

wellbia.com Co., Ltd

Publisher:
Wellbia.com  (signed by wellbia.com Co., Ltd)

Product:
XIGNCODE: xsg32.exe

Version:
2, 0, 0, 320

MD5:
8fc8ef6dc799df5260e9418dd0af5c76

SHA-1:
8836f3d6c8a2877e2c11ce9b1e782f1caecd2f3f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 2:44:07 PM UTC  (today)

File size:
236.4 KB (242,120 bytes)

Product version:
2, 0, 0, 0

Copyright:
Copyright (C) 2009 Wellbia.com Co., Ltd.

Original file name:
xsg32.exe

File type:
Executable application (Win32 EXE)

Language:
Korean

Common path:
C:\Program Files\gamehi_usa\suddenattackna\xsg32.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
4/21/2009 5:00:00 PM

Valid to:
4/22/2010 4:59:59 PM

Subject:
CN="wellbia.com Co., Ltd", OU=Development Team, O="wellbia.com Co., Ltd", L=Guro-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
1D47A7E5F2F11831F27246E4F1BDE646

File PE Metadata
Compilation timestamp:
10/18/2009 8:15:44 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:YTdDrtX/LxaMWz4zyMz20TCbz/UtEafQtNW1G:YTdDrtX/9ap4WMS0TCncrfQtNW1

Entry address:
0x15646

Entry point:
E8, 1E, 72, 00, 00, E9, 17, FE, FF, FF, 55, 8B, EC, 83, EC, 10, 53, 56, FF, 75, 10, 8D, 4D, F0, E8, 45, F5, FF, FF, 8B, 5D, 08, 33, F6, 3B, DE, 75, 2F, E8, 8B, 1E, 00, 00, 56, 56, 56, 56, 56, C7, 00, 16, 00, 00, 00, E8, 98, 20, 00, 00, 83, C4, 14, 80, 7D, FC, 00, 74, 07, 8B, 45, F8, 83, 60, 70, FD, B8, FF, FF, FF, 7F, E9, C0, 00, 00, 00, 57, 8B, 7D, 0C, 3B, FE, 75, 2F, E8, 54, 1E, 00, 00, 56, 56, 56, 56, 56, C7, 00, 16, 00, 00, 00, E8, 61, 20, 00, 00, 83, C4, 14, 80, 7D, FC, 00, 74, 07, 8B, 45, F8, 83, 60...
 
[+]

Entropy:
6.1545

Code size:
136 KB (139,264 bytes)

The file xsg32.exe has been discovered within the following program.

SuddenAttackNA  by GameHi_USA
www.gamehi.com
About 3% of users remove it
 
Powered by Should I Remove It?

Scan xsg32.exe - Powered by Reason Core Security