FortKnoxGUI.exe

NETGATE FortKnox Personal Firewall

NETGATE Technologies s.r.o.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘FortKnoxPersonalFirewall’.
Publisher:
NETGATE Technologies s.r.o.  (signed and verified)

Product:
NETGATE FortKnox Personal Firewall

Description:
FortKnox Personal Firewall

Version:
5, 0, 505, 0

MD5:
40c10a40d81b13c58b2649bd3ab094f4

SHA-1:
91ab91172cd9334c324cddc4b93cbdfbed83d9e8

SHA-256:
d9b02aa78565478c2985a0e4530f0cc349482f41899fb8f9e9d5152342f375ad

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 3:48:06 PM UTC  (today)

File size:
2.5 MB (2,572,440 bytes)

Product version:
5, 0, 505, 0

Copyright:
Copyright © 2007-2010 NETGATE Technologies s.r.o.

Original file name:
FortKnoxGUI.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\netgate\fortknox personal firewall\fortknoxgui.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/11/2010 1:00:00 AM

Valid to:
4/21/2011 12:59:59 AM

Subject:
CN=NETGATE Technologies s.r.o., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NETGATE Technologies s.r.o., L=Prievidza, S=Slovakia, C=SK

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5EE5DB781772D3FD5EC631E549B3CACD

File PE Metadata
Compilation timestamp:
4/22/2010 5:52:32 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:bktn3R5fg/B08zI7JWA91Jf9n3Z8PTHCrBRp+qASz2t9YHNrWG29k1i2ZRCsV9SJ:IVWA91z8CDp+qASz2t9YHNrWG29k1i2a

Entry address:
0x126BE0

Entry point:
48, 8B, C4, 48, 81, EC, A8, 00, 00, 00, 48, 89, 58, 18, 48, 89, 78, 20, 48, 8D, 48, 88, FF, 15, BC, A9, 01, 00, 90, FF, 15, BD, A9, 01, 00, 48, 8B, C8, 33, D2, 41, B8, 94, 00, 00, 00, FF, 15, EC, A9, 01, 00, 48, 8B, D8, 48, 85, C0, 75, 0A, B8, FF, 00, 00, 00, E9, 62, 02, 00, 00, C7, 00, 94, 00, 00, 00, 48, 8B, C8, FF, 15, 1B, A8, 01, 00, 85, C0, 75, 1E, FF, 15, 81, A9, 01, 00, 48, 8B, C8, 4C, 8B, C3, 33, D2, FF, 15, AB, A9, 01, 00, B8, FF, 00, 00, 00, E9, 31, 02, 00, 00, 8B, 43, 10, 89, 05, F4, FD, 08, 00...
 
[+]

Entropy:
5.9909

Code size:
1.3 MB (1,310,720 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
FortKnoxPersonalFirewall

Command:
"C:\Program Files\netgate\fortknox personal firewall\fortknoxgui.exe"


Scan FortKnoxGUI.exe - Powered by Reason Core Security