TwUALauncher.exe

Tw User Agent Launcher

Haedenbridge Co.,LTD

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Tw UA Launcher’.
Publisher:
Haeden Bridge Co., Ltd.  (signed by Haedenbridge Co.,LTD)

Product:
Tw User Agent Launcher

Version:
5, 1, 1, 10502

MD5:
120fa9f6813e3edcad0c8addda53a295

SHA-1:
6ef3686e3afd1328bdbbf28d2806025c9784ed39

SHA-256:
b93df16a89ec96909d0e44bb08925f0ab3ba87cdd20af10241f19c4939fea315

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/10/2025 2:59:43 AM UTC  (today)

File size:
2 MB (2,147,184 bytes)

Product version:
5, 1, 1, 10502

Copyright:
Copyright (c) 2002-2012 Haeden Bridge Co., Ltd. All rights reserved.

Original file name:
TwUALauncher.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\haedenbridge\twuseragent\twualauncher.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
11/21/2014 9:00:00 AM

Valid to:
1/20/2017 8:59:59 AM

Subject:
CN="Haedenbridge Co.,LTD", OU=Engine Development, O="Haedenbridge Co.,LTD", L=Seongdong-gu, S=SEOUL, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
71D2AF566A660AC32012C84092AD42AB

File PE Metadata
Compilation timestamp:
12/23/2014 6:38:41 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x134346

Entry point:
E8, FE, E7, 00, 00, E9, 7B, FE, FF, FF, 55, 8B, EC, 5D, E9, 00, 00, 00, 00, 55, 8B, EC, 6A, 0A, 6A, 00, FF, 75, 08, E8, 22, EB, 00, 00, 83, C4, 0C, 5D, C3, 55, 8B, EC, 83, EC, 18, 8D, 4D, E8, 53, FF, 75, 0C, E8, 7A, C1, FF, FF, 8B, 5D, 08, 81, FB, 00, 01, 00, 00, 73, 60, 8B, 4D, E8, 83, 79, 74, 01, 7E, 14, 8D, 45, E8, 50, 6A, 02, 53, E8, 08, 63, 00, 00, 8B, 4D, E8, 83, C4, 0C, EB, 0D, 8B, 81, 90, 00, 00, 00, 0F, B7, 04, 58, 83, E0, 02, 85, C0, 74, 1E, 80, 7D, F4, 00, 8B, 81, 98, 00, 00, 00, 0F, B6, 0C, 18...
 
[+]

Entropy:
6.4230

Code size:
1.4 MB (1,502,720 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Tw UA Launcher

Command:
C:\Program Files\haedenbridge\twuseragent\twualauncher.exe


Scan TwUALauncher.exe - Powered by Reason Core Security