extractnow.exe

ExtractNow

Nathan Moinvaziri

This is installed with ExtractNow.
Publisher:
Nathan Moinvaziri  (signed and verified)

Product:
ExtractNow

Version:
4,7,1,0

MD5:
b3f985635fb50be0f51efc7722a2f116

SHA-1:
97eb0e7d92b89efcb9cbd2e324a68b0fe569a6e9

SHA-256:
2a243b161931e2a34c8f2f2ed5b61b20472e31b2ee015f77df45e124423d20df

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 2:08:38 PM UTC  (today)

File size:
326.9 KB (334,744 bytes)

Product version:
4,7,1,0

Copyright:
Copyright (C) Nathan Moinvaziri 2012

Original file name:
extractnow.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\extractnow\extractnow.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/29/2012 2:00:00 AM

Valid to:
1/29/2013 1:59:59 AM

Subject:
CN=Nathan Moinvaziri, OU=Individual Developer, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=No Organization Affiliation, L=Phoenix, S=Arizona, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2635C1001419277F2FF117789D4E891B

File PE Metadata
Compilation timestamp:
8/23/2012 9:36:48 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:lK3bVmxHfHbNr4SUqs4LJbuk067EFUsOCHb3D4JGj1rMGLCIDnooSMX4:lK3ZmHfh3J9nsHHLdtm4ooSR

Entry address:
0x14A780

Entry point:
60, BE, 00, 50, 50, 00, 8D, BE, 00, C0, EF, FF, 57, 89, E5, 8D, 9C, 24, 80, C1, FF, FF, 31, C0, 50, 39, DC, 75, FB, 46, 46, 53, 68, DC, 88, 14, 00, 57, 83, C3, 04, 53, 68, 71, 57, 04, 00, 56, 83, C3, 04, 53, 50, C7, 03, 03, 00, 02, 00, 90, 90, 90, 90, 90, 55, 57, 56, 53, 83, EC, 7C, 8B, 94, 24, 90, 00, 00, 00, C7, 44, 24, 74, 00, 00, 00, 00, C6, 44, 24, 73, 00, 8B, AC, 24, 9C, 00, 00, 00, 8D, 42, 04, 89, 44, 24, 78, B8, 01, 00, 00, 00, 0F, B6, 4A, 02, 89, C3, D3, E3, 89, D9, 49, 89, 4C, 24, 6C, 0F, B6, 4A...
 
[+]

Entropy:
7.7800  (probably packed)

Code size:
284 KB (290,816 bytes)

The file extractnow.exe has been discovered within the following program.

ExtractNow  by Nathan Moinvaziri
Some versions use the OpenCandy software library to bundle potentially unwanted software offers during installation.
www.extractnow.com
28% remove it
 
Powered by Should I Remove It?

Scan extractnow.exe - Powered by Reason Core Security