viettel-ca_v3_certd.exe

Viettel-CA Application

CYBERLOTUS VIETNAM TECHNOLOGY JSC

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Viettel Token Manager V3.0_Viettel’.
Publisher:
Viettel-CA  (signed by CYBERLOTUS VIETNAM TECHNOLOGY JSC)

Product:
Viettel-CA Application

Version:
1, 0, 13, 509

MD5:
d03da1b4eee13a51e3bcca694c19325b

SHA-1:
cbfcd50ecfa17947b0fdd6a1b9f577fcd35e719e

SHA-256:
78805b2b68934a37023279ae2ce01b0ca0555a9ef775c5851e412831507e8a1b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 3:58:14 AM UTC  (today)

File size:
143 KB (146,480 bytes)

Product version:
1, 0, 13, 509

Copyright:
Copyright (C) 2013 Viettel-CA

Original file name:
certreg.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\viettel-ca\viettel token manager v3.0\viettel-ca_v3_certd.exe

Digital Signature
Authority:
Thawte, Inc.

Subject:
CN=CYBERLOTUS VIETNAM TECHNOLOGY JSC, OU=IT Department, O=CYBERLOTUS VIETNAM TECHNOLOGY JSC, L=Ha Noi, S=Vietnam, C=VN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2AFEB069D18BB5D1288E4D2587BE928E

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x13DB2

Entry point:
55, 8B, EC, 6A, FF, 68, 48, 70, 41, 00, 68, 4E, 40, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, 5F, 57, FF, 15, 80, 64, 41, 00, 59, 83, 0D, 48, E3, 41, 00, FF, 83, 0D, 4C, E3, 41, 00, FF, FF, 15, 84, 64, 41, 00, 8B, 0D, 3C, E3, 41, 00, 89, 08, FF, 15, 88, 64, 41, 00, 8B, 0D, 38, E3, 41, 00, 89, 08, A1, 20, 65, 41, 00, 8B, 00, A3, 44, E3, 41, 00, E8, 2A, 02, 00, 00, 39, 1D, 10, D9, 41, 00, 75, 0C, 68, 4A, 40, 41, 00, FF, 15...
 
[+]

Entropy:
6.0120

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
83.5 KB (85,504 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Viettel Token Manager V3.0_Viettel

Command:
C:\Program Files\viettel-ca\viettel token manager v3.0\viettel-ca_v3_certd.exe


Scan viettel-ca_v3_certd.exe - Powered by Reason Core Security