extract now.exe

ExtractNow

Nathan Moinvaziri

This is installed with ExtractNow.
Publisher:
Nathan Moinvaziri  (signed and verified)

Product:
ExtractNow

Version:
4,7,6,0

MD5:
7cf093f54d91fc39eaea29c661451372

SHA-1:
f5c7b834e3be96e01ee466951b54c9f2bf24bb7a

SHA-256:
863384f9cfcefd7ed2a977c26572ce5acb6d6bd2f08627f759186f98796314af

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 11:20:46 PM UTC  (a few moments ago)

File size:
256 KB (262,120 bytes)

Product version:
4,7,6,0

Copyright:
Copyright (C) Nathan Moinvaziri 2001-2013

Original file name:
extractnow.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\extract now.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/29/2012 10:00:00 AM

Valid to:
1/29/2013 9:59:59 AM

Subject:
CN=Nathan Moinvaziri, OU=Individual Developer, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=No Organization Affiliation, L=Phoenix, S=Arizona, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2635C1001419277F2FF117789D4E891B

File PE Metadata
Compilation timestamp:
12/29/2012 5:10:16 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:LVGoddnlN60UiCCqDMj+Gy/O3pvN1F86zwrWL0vmuioS+8:LVr3q0oC/eO3n1VwiLPoSf

Entry address:
0x1019D0

Entry point:
60, BE, 00, E0, 4C, 00, 8D, BE, 00, 30, F3, FF, 57, 89, E5, 8D, 9C, 24, 80, C1, FF, FF, 31, C0, 50, 39, DC, 75, FB, 46, 46, 53, 68, F7, FB, 0F, 00, 57, 83, C3, 04, 53, 68, C2, 39, 03, 00, 56, 83, C3, 04, 53, 50, C7, 03, 03, 00, 02, 00, 90, 90, 90, 90, 90, 55, 57, 56, 53, 83, EC, 7C, 8B, 94, 24, 90, 00, 00, 00, C7, 44, 24, 74, 00, 00, 00, 00, C6, 44, 24, 73, 00, 8B, AC, 24, 9C, 00, 00, 00, 8D, 42, 04, 89, 44, 24, 78, B8, 01, 00, 00, 00, 0F, B6, 4A, 02, 89, C3, D3, E3, 89, D9, 49, 89, 4C, 24, 6C, 0F, B6, 4A...
 
[+]

Entropy:
7.6895

Code size:
212 KB (217,088 bytes)

The file extract now.exe has been discovered within the following program.

ExtractNow  by Nathan Moinvaziri
Some versions use the OpenCandy software library to bundle potentially unwanted software offers during installation.
www.extractnow.com
28% remove it
 
Powered by Should I Remove It?

Scan extract now.exe - Powered by Reason Core Security