TwUALauncher.exe

Tw User Agent Launcher

Haedenbridge Co.,LTD

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Tw UA Launcher’.
Publisher:
Haeden Bridge Co., Ltd.  (signed by Haedenbridge Co.,LTD)

Product:
Tw User Agent Launcher

Version:
5, 1, 1, 11621

MD5:
d5e68271c3f692f5151d983fabc5464d

SHA-1:
c535c4f76e91216650ebe07fa0c2ddfeba712f55

SHA-256:
2f203b30af82ccf20ab5205c53045f32c12b21fa470ab2760a70beb43807daa2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 9:34:41 AM UTC  (today)

File size:
2 MB (2,147,184 bytes)

Product version:
5, 1, 1, 11621

Copyright:
Copyright (c) 2002-2012 Haeden Bridge Co., Ltd. All rights reserved.

Original file name:
TwUALauncher.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\haedenbridge\twuseragent\twualauncher.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
11/21/2014 9:00:00 AM

Valid to:
1/20/2017 8:59:59 AM

Subject:
CN="Haedenbridge Co.,LTD", OU=Engine Development, O="Haedenbridge Co.,LTD", L=Seongdong-gu, S=SEOUL, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
71D2AF566A660AC32012C84092AD42AB

File PE Metadata
Compilation timestamp:
2/3/2015 10:40:36 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x134346

Entry point:
E8, FE, E7, 00, 00, E9, 7B, FE, FF, FF, 55, 8B, EC, 5D, E9, 00, 00, 00, 00, 55, 8B, EC, 6A, 0A, 6A, 00, FF, 75, 08, E8, 22, EB, 00, 00, 83, C4, 0C, 5D, C3, 55, 8B, EC, 83, EC, 18, 8D, 4D, E8, 53, FF, 75, 0C, E8, 7A, C1, FF, FF, 8B, 5D, 08, 81, FB, 00, 01, 00, 00, 73, 60, 8B, 4D, E8, 83, 79, 74, 01, 7E, 14, 8D, 45, E8, 50, 6A, 02, 53, E8, 08, 63, 00, 00, 8B, 4D, E8, 83, C4, 0C, EB, 0D, 8B, 81, 90, 00, 00, 00, 0F, B7, 04, 58, 83, E0, 02, 85, C0, 74, 1E, 80, 7D, F4, 00, 8B, 81, 98, 00, 00, 00, 0F, B6, 0C, 18...
 
[+]

Entropy:
6.4231

Code size:
1.4 MB (1,502,720 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Tw UA Launcher

Command:
C:\Program Files\haedenbridge\twuseragent\twualauncher.exe


Scan TwUALauncher.exe - Powered by Reason Core Security