SCChkUpd2.exe

StarCodec

Pintosoft

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘scchk’.
Publisher:
Pintosoft  (signed and verified)

Product:
StarCodec

Description:
StarCodec Update Checker

Version:
2, 1, 0, 0

MD5:
0908c4f66a72a0c929303518e04c61cf

SHA-1:
c04d8baabbb2a4bfc114af97c70f2e2f29a38a88

SHA-256:
53a43dbca240073171b318fbf6738d9e2da35ad6b7cd7811f9d0f7ed284d2be9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 2:59:15 PM UTC  (today)

File size:
410.9 KB (420,792 bytes)

Product version:
4, 65, 0, 0

Copyright:
starcodec@gmail.com

Original file name:
SCChkUpd2.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\starcodec64\scchkupd2.exe

Digital Signature
Signed by:

Authority:
SGssl

Valid from:
11/12/2013 9:00:00 AM

Valid to:
11/13/2014 8:59:59 AM

Subject:
CN=Pintosoft, O=Pintosoft, STREET="D-355, JNI Center, Acrotower", STREET="230, Simin-daero", L="Dongan-gu, Anyang-si", S=GYEONGGI-DO, PostalCode=431908, C=KR

Issuer:
CN=SGTRUST CODE SIGNING CA, O=SGssl, C=KR

Serial number:
60C291E768243CA8D69FA3C11AC3C860

File PE Metadata
Compilation timestamp:
1/1/2014 7:50:01 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:TkvCIxg/MlbkvORS95TZQkpxBzJHDgXbTyJq2JeSZ9Bv5Gg:4vra/M1E9lZvzJj6OXZ93Gg

Entry address:
0x286C4

Entry point:
48, 83, EC, 28, E8, 2B, A8, 00, 00, 48, 83, C4, 28, E9, 12, FE, FF, FF, CC, CC, 40, 53, 48, 83, EC, 30, 4D, 8B, D8, 4D, 85, C9, 75, 0E, 48, 85, C9, 75, 0E, 48, 85, D2, 75, 20, 33, C0, EB, 3F, 48, 85, C9, 74, 17, 48, 85, D2, 74, 12, 4D, 85, C9, 75, 05, 44, 88, 09, EB, E8, 4D, 85, C0, 75, 2C, 44, 88, 01, E8, E3, 01, 00, 00, BB, 16, 00, 00, 00, 48, 83, 64, 24, 20, 00, 45, 33, C9, 45, 33, C0, 33, D2, 33, C9, 89, 18, E8, 0F, FD, FF, FF, 8B, C3, 48, 83, C4, 30, 5B, C3, 4C, 8B, D1, 4C, 8B, C2, 49, 83, F9, FF, 75...
 
[+]

Entropy:
6.1742

Code size:
236 KB (241,664 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
scchk

Command:
"C:\Program Files\starcodec64\scchkupd2.exe" \s


Scan SCChkUpd2.exe - Powered by Reason Core Security