I3GManager.exe

I3GManager

Interezen

This is a setup and installation application. The file has been seen being downloaded from www.samsungcard.com and multiple other hosts.
Publisher:
Interezen. Co., Ltd.  (signed by Interezen)

Product:
I3GManager

Description:
I3GManager Security Module Installer

Version:
1, 0, 1, 18

MD5:
c54bd145d29b7a81c9e956ce42a1877e

SHA-1:
136eaf30274a5ba40b3820a72857d89a245f7057

SHA-256:
124e9aad5f82bc03cb33275f8b453b9986f69c3b8a9d73b9c6c845b8bd4a0c74

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 5:23:05 PM UTC  (today)

File size:
722.2 KB (739,512 bytes)

Product version:
1, 0, 1, 18

Copyright:
Interezen. Copyright ⓒ 2009

Original file name:
I3GManager.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\windows\downloaded Program Files\i3gmanager.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
10/25/2011 9:00:00 AM

Valid to:
11/24/2012 8:59:59 AM

Subject:
CN=Interezen, O=Interezen, L=Gangnam, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
3AF12B556D936D1B9AFB4D27DE6D4FCA

File PE Metadata
Compilation timestamp:
6/5/2012 2:18:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:DZg6FlG4FPJoD6QacUKldkFmHKeCLZWWLcW4wPV45FvHugMbTWraEC2U7aCS6jrG:DZg6FlG4FPeD6xDma4WL2155Hcim2Z6G

Entry address:
0x853A

Entry point:
55, 8B, EC, 6A, FF, 68, 20, F9, 40, 00, 68, F8, BB, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, E8, E0, 40, 00, 33, D2, 8A, D4, 89, 15, 60, 42, 41, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 5C, 42, 41, 00, C1, E1, 08, 03, CA, 89, 0D, 58, 42, 41, 00, C1, E8, 10, A3, 54, 42, 41, 00, 33, F6, 56, E8, AF, 1F, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 97, 34, 00, 00, FF, 15, E4, E0, 40, 00, A3, 9C, 57, 41, 00, E8...
 
[+]

Entropy:
7.8620

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
52 KB (53,248 bytes)

ActiveX Install
Name:
{0FA97F46-8BCD-456F-89C4-9845133DEE94}


The file I3GManager.exe has been discovered within the following programs.

XecureWeb Control  by SOFTFORUM CO.,LTD
Publisher's description - “XecureWeb, a concentration of Softforum's web security technology, is a 128 bit encryption solution developed first in the nation armed with high efficiency, quick processing speed, compatibility.”
About 4% of users remove it
XecureWeb UnifiedPlugin  by SOFTFORUM CO.,LTD
XecureWeb is a way of submiting web forms using TCP/IP and ActiveX control in South Korea. XecureWeb developed in Korea, the system that issues the certificate correctly, you want to distribute.
www.c-square.co.jp/product/xweb.html
About 7% of users remove it
 
Powered by Should I Remove It?

The file I3GManager.exe has been seen being distributed by the following 2 URLs.

Scan I3GManager.exe - Powered by Reason Core Security