FortKnoxGUI.exe

NETGATE FortKnox Personal Firewall

NETGATE Technologies s.r.o.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘FortKnoxPersonalFirewall’.
Publisher:
NETGATE Technologies s.r.o.  (signed and verified)

Product:
NETGATE FortKnox Personal Firewall

Description:
FortKnox Personal Firewall

Version:
7, 0, 705, 0

MD5:
e13bd896944a59a2a8362eb2486a0b2a

SHA-1:
a3eaef45d7be0705a22cdebc5862b4946c743abc

SHA-256:
d6450f7bab74e3b254ebb446b4c9f15e383c1f2cb814d012bd57aba50045658c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 1:21:01 PM UTC  (today)

File size:
2.2 MB (2,336,096 bytes)

Product version:
7, 0, 705, 0

Copyright:
Copyright © 2007-2011 NETGATE Technologies s.r.o.

Original file name:
FortKnoxGUI.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\netgate\fortknox personal firewall\fortknoxgui.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/30/2011 8:00:00 PM

Valid to:
4/19/2012 7:59:59 PM

Subject:
CN=NETGATE Technologies s.r.o., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NETGATE Technologies s.r.o., L=Prievidza, S=Slovakia, C=SK

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2ECC1DFC1728AF219853131958879016

File PE Metadata
Compilation timestamp:
12/12/2011 3:10:39 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:m3+brSu3B4n7AZqWzpF2T9ndPMp+qAyz2t9YHNBWG29k1i2ZPCsV9SWkXrUG9e+/:3G7AZqmFFp+qAyz2t9YHNBWG29k1i2Zm

Entry address:
0xD5B84

Entry point:
48, 83, EC, 28, E8, 33, C7, 00, 00, 48, 83, C4, 28, E9, 12, FE, FF, FF, CC, CC, 40, 53, 48, 83, EC, 20, BA, 08, 00, 00, 00, 8D, 4A, 18, E8, 4D, BE, 00, 00, 48, 8B, C8, 48, 8B, D8, E8, 5A, 35, 00, 00, 48, 89, 05, 6B, E6, 0A, 00, 48, 89, 05, 5C, E6, 0A, 00, 48, 85, DB, 75, 05, 8D, 43, 18, EB, 06, 48, 83, 23, 00, 33, C0, 48, 83, C4, 20, 5B, C3, CC, CC, 48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 48, 89, 7C, 24, 18, 41, 54, 41, 55, 41, 56, 48, 83, EC, 20, 4C, 8B, F1, E8, C7, F1, FF, FF, 90, 48, 8B, 0D, 23, E6, 0A...
 
[+]

Entropy:
5.9726

Code size:
1.1 MB (1,182,208 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
FortKnoxPersonalFirewall

Command:
"C:\Program Files\netgate\fortknox personal firewall\fortknoxgui.exe"


Scan FortKnoxGUI.exe - Powered by Reason Core Security