UpAuroraKernelService.exe

UpAurora Server

AURORA NETWORK COMPANY LIMITED

It runs as a separate (within the context of its own process) windows Service named “UpAurora Kernel Service”. This is installed with UpAurora.
Publisher:
UpAurora.COM  (signed by AURORA NETWORK COMPANY LIMITED)

Product:
UpAurora Server

Version:
1.0.0.7

MD5:
7ee7195ad66c5402b1307e4ed60e9e9d

SHA-1:
8727d8c7d4056ba42e98c8b9f263fd76956c4ea0

SHA-256:
185268f8d5bc453a80f06486bec6ab0f4c24bec70c8f57fd70cd5b8a55e3f98a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 3:10:06 AM UTC  (today)

File size:
180.5 KB (184,880 bytes)

Product version:
1.0.0.7

Copyright:
Copyright @ 2015 UpAurora.COM. All Rights Reserved.

Original file name:
UpAuroraKernelService.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\upaurorabrowser\installer\upaurorakernelservice.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/23/2015 9:00:00 PM

Valid to:
7/26/2016 9:00:00 AM

Subject:
CN=AURORA NETWORK COMPANY LIMITED, O=AURORA NETWORK COMPANY LIMITED, L=Hong Kong, C=HK, PostalCode=HK, STREET="Unit 04, 7/F Bright Way Tower No.33 Mong Kok Rd, Kln", SERIALNUMBER=2237249, OID.1.3.6.1.4.1.311.60.2.1.3=HK, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0BDEC9C484B67149205C8B50942140A6

File PE Metadata
Compilation timestamp:
12/30/2015 1:10:56 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:aL1Eg1tQ5U+KS+je0f1W1nRGL5Kl/22inGQaACL5u+H71frSS:aO35UzS+j/W1ULAu42C0g71jR

Entry address:
0xE167

Entry point:
E8, 59, 93, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 57, 56, E8, 00, 05, 00, 00, 33, FF, 59, 3B, F7, 75, 1D, E8, BC, 18, 00, 00, 57, 57, 57, 57, 57, C7, 00, 16, 00, 00, 00, E8, D0, FD, FF, FF, 83, C4, 14, 83, C8, FF, EB, 34, 39, 7D, 0C, 74, DE, B9, FF, FF, FF, 7F, C7, 45, EC, 49, 00, 00, 00, 89, 75, E8, 89, 75, E0, 89, 4D, E4, 3B, C1, 77, 03, 89, 45, E4, FF, 75, 14, 8D, 45, E0, FF, 75, 10, FF, 75, 0C, 50, FF, 55, 08, 83, C4, 10, 5F, C9, C3, 8B, FF, 55, 8B, EC, 56, 8B, 75, 08, 8D, 45, 10...
 
[+]

Code size:
125.5 KB (128,512 bytes)

Service
Display name:
UpAurora Kernel Service

Description:
UpAurora Kernel Service ...

Type:
Win32OwnProcess


The file UpAuroraKernelService.exe has been discovered within the following program.

UpAurora  by UpAurora.COM
About 8% of users remove it
 
Powered by Should I Remove It?

Scan UpAuroraKernelService.exe - Powered by Reason Core Security