mlpatch.exe

Magic Control Technology Corp.

It runs as a separate (within the context of its own process) windows Service named “MlPatch”.
Publisher:
Magic Control Technology Corp.  (signed and verified)

MD5:
eb9b97242f218e3ff98743a35248d9e7

SHA-1:
6a170c8f31794fe08dd7f04078dc4dc0e8314dd6

SHA-256:
ef5dd82b70fb61867264bf1d8612b88a997d7fdfce25e56049cf79f0fbab76fb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 7:30:25 AM UTC  (today)

File size:
2.1 MB (2,244,912 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Windows\System32\mlpatch.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/23/2012 8:00:00 PM

Valid to:
7/25/2015 7:59:59 PM

Subject:
CN=Magic Control Technology Corp., OU=GM' Secretary, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Magic Control Technology Corp., L=Taipei, S=Taiwan, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1AF6A29F359EDB48A50633D3DAE59D75

File PE Metadata
Compilation timestamp:
8/22/2014 4:17:20 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
10.0

Entry address:
0x144CF4

Entry point:
48, 83, EC, 28, E8, AF, 8C, 00, 00, 48, 83, C4, 28, E9, 76, FE, FF, FF, CC, CC, 40, 57, 48, 83, EC, 20, 4D, 8B, D0, 45, 33, C0, 4D, 85, C9, 75, 04, 33, C0, EB, 5F, 48, 85, C9, 75, 15, E8, DD, 01, 00, 00, BF, 16, 00, 00, 00, 89, 38, E8, 8D, 58, 00, 00, 8B, C7, EB, 45, 4D, 85, D2, 74, 13, 49, 3B, D1, 72, 0E, 4F, 8D, 04, 09, 49, 8B, D2, E8, 63, 1B, 00, 00, EB, CA, 48, 85, D2, 74, 0D, 48, 8B, F9, 41, 0F, B7, C0, 48, 8B, CA, 66, F3, AB, 4D, 85, D2, 74, BC, 49, 3B, D1, 73, 0C, E8, 94, 01, 00, 00, BF, 22, 00, 00...
 
[+]

Entropy:
6.2674

Code size:
1.4 MB (1,485,824 bytes)

Service
Display name:
MlPatch

Description:
MCT Custom Service

Type:
Win32OwnProcess


Scan mlpatch.exe - Powered by Reason Core Security