pointory_upchk.exe

AutoUpdate 응용 프로그램

iMBC Co., Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘iMBC pointory’.
Publisher:
iMBC Co., Ltd.  (signed and verified)

Product:
AutoUpdate 응용 프로그램

Description:
AutoUpdate MFC 응용 프로그램

Version:
1, 0, 0, 4

MD5:
7b49101e6e4050dbdae186f8559065ea

SHA-1:
b50e50d38bece604eb8f46ca799c3cabb48bb831

SHA-256:
dacbe25941c0f5dc43e7a67706f5cf8df32c22d7db6e8cb45934874563e75da6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 7:27:44 PM UTC  (today)

File size:
53.5 KB (54,808 bytes)

Product version:
1, 0, 0, 4

Copyright:
Copyright (C) 2006

Original file name:
AutoUpdate.EXE

File type:
Executable application (Win32 EXE)

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
2/26/2007 10:33:30 PM

Valid to:
2/25/2009 10:33:30 PM

Subject:
CN="iMBC Co., Ltd.", OU=Software Development Department, O="iMBC Co., Ltd.", L=youngdengpogu, S=seoul, C=KR

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
544A30196E6C9765E94120E0A0BD4C54

File PE Metadata
Compilation timestamp:
5/16/2008 1:59:36 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x4F2F

Entry point:
55, 8B, EC, 6A, FF, 68, A8, 67, 40, 00, 68, B6, 50, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, A8, 62, 40, 00, 59, 83, 0D, 34, 84, 40, 00, FF, 83, 0D, 38, 84, 40, 00, FF, FF, 15, A4, 62, 40, 00, 8B, 0D, 28, 84, 40, 00, 89, 08, FF, 15, 04, 63, 40, 00, 8B, 0D, 24, 84, 40, 00, 89, 08, A1, B4, 62, 40, 00, 8B, 00, A3, 30, 84, 40, 00, E8, 17, 01, 00, 00, 39, 1D, C0, 82, 40, 00, 75, 0C, 68, B2, 50, 40, 00, FF, 15, B8, 62...
 
[+]

Entropy:
5.2770

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
20 KB (20,480 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
iMBC pointory

Command:
C:\program1\pointory_upchk.exe


Scan pointory_upchk.exe - Powered by Reason Core Security