cFosDNT.EXE

cFos NT/2000/XP/Vista - Windows NT/2000/XP/Vista Virtual COM Port for DSL/ISDN CAPI

cFos Software GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘cFosDNT’.
Publisher:
cFos Software GmbH  (signed and verified)

Product:
cFos NT/2000/XP/Vista - Windows NT/2000/XP/Vista Virtual COM Port for DSL/ISDN CAPI

Version:
7.21.3039

MD5:
566a226efc9087b149095f0b1d9378c5

SHA-1:
00fda67ada4aa1fad7a3499da96bbc482f6652a7

SHA-256:
0d3025119a368bc94239982237c0129ac4af867b387294d2e40c1a6bbca67f8e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 5:54:34 AM UTC  (today)

File size:
811 KB (830,416 bytes)

Product version:
7.21.3039

Copyright:
Copyright © Lueders/Winkler 1993-2007

Original file name:
cFosDNT.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\cfos\cfosdnt.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/9/2006 3:23:26 PM

Valid to:
11/9/2007 3:23:26 PM

Subject:
E=cfos-support@cfos.de, CN=cFos Software GmbH, O=cFos Software GmbH, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000010ECCE31CF2

File PE Metadata
Compilation timestamp:
9/13/2007 11:06:47 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:qHqOQaW4Wsvtrfqz7QXc2jeReV1BUX9R1wythoMWFqjf2+xuKVxe:4qD4N+YcueWbIiyDoMWFjh

Entry address:
0x7D259

Entry point:
E8, 50, 95, 00, 00, E9, 16, FE, FF, FF, FF, 74, 24, 04, FF, 15, 10, 52, 49, 00, 85, C0, 75, 08, FF, 15, 70, 51, 49, 00, EB, 02, 33, C0, 85, C0, 74, 0B, 50, E8, E7, DE, FF, FF, 59, 83, C8, FF, C3, 33, C0, C3, FF, 74, 24, 04, FF, 15, 14, 52, 49, 00, 85, C0, 75, 08, FF, 15, 70, 51, 49, 00, EB, 02, 33, C0, 85, C0, 74, 0B, 50, E8, BD, DE, FF, FF, 59, 83, C8, FF, C3, 33, C0, C3, FF, 74, 24, 08, FF, 74, 24, 08, FF, 15, 18, 52, 49, 00, 85, C0, 75, 08, FF, 15, 70, 51, 49, 00, EB, 02, 33, C0, 85, C0, 74, 0B, 50, E8...
 
[+]

Entropy:
6.4189

Code size:
592 KB (606,208 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
cFosDNT

Command:
C:\Program Files\cfos\cfosdnt.exe


Scan cFosDNT.EXE - Powered by Reason Core Security