detect.exe

Conkeeper

iMBC Co., Ltd.

Publisher:
iMBC  (signed by iMBC Co., Ltd.)

Product:
Conkeeper

Version:
1.0.0.7

MD5:
e521bdb1fe97a77cfa5fbcca0d6c9c72

SHA-1:
d6f4cdd1ffdd0c5777a28e45f4851ce00c2d7f03

SHA-256:
78d28a794eea5ae0b1bf1c71e58707289ce9feac3eccfbc8572209a34acd9b72

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 8:29:32 PM UTC  (today)

File size:
924.9 KB (947,144 bytes)

Product version:
1.0.0.7

Copyright:
iMBC All rights reserved.

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\daoki\detect.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
1/21/2016 9:00:00 AM

Valid to:
5/8/2016 8:59:59 AM

Subject:
CN="iMBC Co., Ltd.", O="iMBC Co., Ltd.", L=Mapo-gu, S=Seoul, C=KR

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
0F6F12D10474ED4D1C13A26F4E401BCE

File PE Metadata
Compilation timestamp:
4/20/2016 2:25:06 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:9Axv8KHfwyju9a6hwAzoGEUk3ZOanu5hBWz:9SvB/01hw0Qpnu5hy

Entry address:
0x4D9A2

Entry point:
E8, 7C, 05, 00, 00, E9, B3, FD, FF, FF, CC, CC, CC, CC, 51, 8D, 4C, 24, 04, 2B, C8, 1B, C0, F7, D0, 23, C8, 8B, C4, 25, 00, F0, FF, FF, 3B, C8, 72, 0A, 8B, C1, 59, 94, 8B, 00, 89, 04, 24, C3, 2D, 00, 10, 00, 00, 85, 00, EB, E9, CC, CC, CC, CC, CC, FF, 25, 6C, 52, 4A, 00, FF, 25, 70, 52, 4A, 00, FF, 25, 74, 52, 4A, 00, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 30, AF, 4C, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00...
 
[+]

Entropy:
6.5771

Code size:
653 KB (668,672 bytes)

The file detect.exe has been discovered within the following program.

Wedisk Plug-in  by EZWON.Co.,Ltd
gl.wedisk.co.kr
About 9% of users remove it
 
Powered by Should I Remove It?

The file detect.exe has been seen being distributed by the following 4 URLs.

http://patch.pdpop.com/appx/.../detect.exe

Scan detect.exe - Powered by Reason Core Security