WMInstallMgrLauncher.exe

Wemade ActiveX Install Manager(Vista)

Wemade Entertainment

Publisher:
Wemade Entertainment Co., Ltd.  (signed by Wemade Entertainment)

Product:
Wemade ActiveX Install Manager(Vista)

Version:
1.0.0.3

MD5:
93ee2928f8de9e77a223a0d7e73063ab

SHA-1:
609db8c8e314c91d559f5252794250ccfca2de9d

SHA-256:
8ce4359996d497f2c91269a9a128564aabb725f7d28863b004863ecd1974848e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/14/2025 10:55:23 PM UTC  (today)

File size:
413.2 KB (423,136 bytes)

Product version:
1.0.0.3

Copyright:
Wemade Copyright(C) 2009

Original file name:
WMInstallMgrLauncher.exe

File type:
Executable application (Win32 EXE)

Language:
Korean (Korea)

Common path:
C:\Windows\System32\wminstallmgrlauncher.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
9/6/2009 8:00:00 PM

Valid to:
10/7/2011 7:59:59 PM

Subject:
CN=Wemade Entertainment, O=Wemade Entertainment, L=SEOUL, S=GYEONGGI-DO, C=KR

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
11EC97B341BB977CB47FFF1280282D2A

File PE Metadata
Compilation timestamp:
8/17/2009 10:14:01 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:k7gqjq9+StMqhrypvMyADPIo3DzlDhw4csSWDV:kcTPRypUyADwUzlTcoDV

Entry address:
0x23473

Entry point:
E8, 26, 9E, 00, 00, E9, 16, FE, FF, FF, 6A, 00, FF, 74, 24, 14, FF, 74, 24, 14, FF, 74, 24, 14, FF, 74, 24, 14, E8, 9E, 9E, 00, 00, 83, C4, 14, C3, 8B, 44, 24, 04, 66, 8B, 08, 40, 40, 66, 85, C9, 75, F6, 2B, 44, 24, 04, D1, F8, 48, C3, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00...
 
[+]

Entropy:
6.6165

Code size:
220 KB (225,280 bytes)

ActiveX Install
Name:
{BD68328E-1222-4A62-BA16-E6F42CA49A64}


Scan WMInstallMgrLauncher.exe - Powered by Reason Core Security