FortKnoxGUI.exe

NETGATE FortKnox Personal Firewall

NETGATE Technologies s.r.o.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘FortKnoxPersonalFirewall’.
Publisher:
NETGATE Technologies s.r.o.  (signed and verified)

Product:
NETGATE FortKnox Personal Firewall

Description:
FortKnox Personal Firewall

Version:
9, 0, 805, 0

MD5:
fbdf7a592213e63cc5b5c3ce878ec47b

SHA-1:
b86046247f9e90e5da8969f314e60e68732871b9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:04:59 AM UTC  (today)

File size:
1.7 MB (1,823,040 bytes)

Product version:
9, 0, 805, 0

Copyright:
Copyright © 2007-2013 NETGATE Technologies s.r.o.

Original file name:
FortKnoxGUI.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\fortknox personal firewall\fortknoxgui.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/21/2013 1:00:00 AM

Valid to:
5/21/2014 1:59:59 AM

Subject:
CN=NETGATE Technologies s.r.o., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NETGATE Technologies s.r.o., L=Prievidza, S=Slovakia, C=SK

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
39FA854B3221316A758A0D3708F570C3

File PE Metadata
Compilation timestamp:
6/18/2013 3:28:19 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
49152:RfEJ2OLZuFnO9coO3w7TEurTOuxNp+qASz2t9YHNrWG29k1i2ZRCsV9SWkVrUG9i:RfExLZuFnO9cokurp+qASz2t9YHNrWGn

Entry address:
0xB76BA

Entry point:
E8, 0F, 9A, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, D8, 7C, 51, 00, E8, F0, 3C, 00, 00, E8, B9, 5F, 00, 00, 0F, B7, F0, 6A, 02, E8, A2, 99, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, B2, 8C, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Code size:
897 KB (918,528 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
FortKnoxPersonalFirewall

Command:
"C:\Program Files\fortknox personal firewall\fortknoxgui.exe"


Scan FortKnoxGUI.exe - Powered by Reason Core Security