SecoDaemon.exe

TSM Agent

Huawei Technologies Co., Ltd.

It runs as a windows Service named “SecoDaemon”.
Publisher:
Huawei Technologies Co., Ltd.  (signed and verified)

Product:
TSM Agent

Version:
2, 1, 1, 1

MD5:
c48b2e1d29e20fc193435a2c6ea899ce

SHA-1:
7d7584c54b41faa022650c6b19616b5793aed2eb

SHA-256:
948dd4589a88c778159746cfd0d05a0b039b1bcd73091b01bdcc09c0f7ed58b9

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/24/2024 6:54:01 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Floxif.H virus
6.3.12010.0

F-Prot
W32/Floxif.B
4.6.5.141

File size:
362.8 KB (371,487 bytes)

Product version:
2.1.1.1

Copyright:
Huawei Technologies Co., Ltd. Copyright(c) 2006-2013 All Rights Reserved

Original file name:
SecoDaemon.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, PRC)

Common path:
C:\Program Files\huawei\tsm agent\bin\secodaemon.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/18/2011 6:00:00 AM

Valid to:
10/17/2014 5:59:59 AM

Subject:
CN="Huawei Technologies Co., Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Huawei Technologies Co., Ltd.", L=Hangzhou, S=Zhejiang, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4F3420B815A759A044B34732AF8E4982

File PE Metadata
Compilation timestamp:
1/24/2014 10:02:46 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

Entry address:
0x29722

Entry point:
E9, CB, E9, FD, FF, E9, 42, FD, FF, FF, 68, 8A, 91, 42, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 28, 05, 44, 00, 31, 45, FC, 33, C5, 89, 45, E4, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, E4, 33, CD, E8, 90, F9, FF, FF, E9, 82, 03, 00, 00, 8B, 00, 81, 38, 63, 73, 6D, E0, 74, 03, 33, C0, C3, E9, 87, 06, 00, 00, 6A, 14, 68, C8, B4, 43, 00, E8, 1F, 03, 00, 00, 83...
 
[+]

Entropy:
6.7567

Packer / compiler:
Xtreme-Protector v1.05

Code size:
188 KB (192,512 bytes)

Service
Display name:
SecoDaemon

Type:
Win32OwnProcess, InteractiveProcess

Group:
NetworkProvider


Scan SecoDaemon.exe - Powered by Reason Core Security