FortKnoxGUI.exe

NETGATE FortKnox Personal Firewall

NETGATE Technologies s.r.o.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘FortKnoxPersonalFirewall’.
Publisher:
NETGATE Technologies s.r.o.  (signed and verified)

Product:
NETGATE FortKnox Personal Firewall

Description:
FortKnox Personal Firewall

Version:
6, 0, 505, 0

MD5:
a1f9b1bdd06e4f1bc70f11735edfe14c

SHA-1:
129337df43c9feee27757896f9f9f6e2b9f32b2e

SHA-256:
5b7f2c884e2ef0e755e47bedc045dec8ddbc70cab803535a9674ec405dadf299

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 3:29:18 AM UTC  (today)

File size:
2.5 MB (2,599,576 bytes)

Product version:
6, 0, 505, 0

Copyright:
Copyright © 2007-2011 NETGATE Technologies s.r.o.

Original file name:
FortKnoxGUI.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\netgate\fortknox personal firewall\fortknoxgui.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/10/2010 8:00:00 PM

Valid to:
4/20/2011 7:59:59 PM

Subject:
CN=NETGATE Technologies s.r.o., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NETGATE Technologies s.r.o., L=Prievidza, S=Slovakia, C=SK

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5EE5DB781772D3FD5EC631E549B3CACD

File PE Metadata
Compilation timestamp:
1/26/2011 3:39:47 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:rZZA26sR5f8zfU1Ke9TqLDWhMxV1Tw0vvrXFatp+qASz2t9YHNrWG29k1i2ZRCsr:NhV7eyKeRqGMO0vvsp+qASz2t9YHNrWi

Entry address:
0x12B1B0

Entry point:
48, 8B, C4, 48, 81, EC, A8, 00, 00, 00, 48, 89, 58, 18, 48, 89, 78, 20, 48, 8D, 48, 88, FF, 15, F4, B3, 01, 00, 90, FF, 15, F5, B3, 01, 00, 48, 8B, C8, 33, D2, 41, B8, 94, 00, 00, 00, FF, 15, 24, B4, 01, 00, 48, 8B, D8, 48, 85, C0, 75, 0A, B8, FF, 00, 00, 00, E9, 62, 02, 00, 00, C7, 00, 94, 00, 00, 00, 48, 8B, C8, FF, 15, 2B, B2, 01, 00, 85, C0, 75, 1E, FF, 15, B9, B3, 01, 00, 48, 8B, C8, 4C, 8B, C3, 33, D2, FF, 15, E3, B3, 01, 00, B8, FF, 00, 00, 00, E9, 31, 02, 00, 00, 8B, 43, 10, 89, 05, 24, 18, 09, 00...
 
[+]

Entropy:
5.9908

Code size:
1.3 MB (1,328,640 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
FortKnoxPersonalFirewall

Command:
"C:\Program Files\netgate\fortknox personal firewall\fortknoxgui.exe"


Scan FortKnoxGUI.exe - Powered by Reason Core Security