fp.exe

Nefsis

Publisher:
Nefsis  (signed and verified)

Description:
Nefsis Conference Client

Version:
5.2.21.317

MD5:
df1e857d1e0323c2edd474fd0ef71be2

SHA-1:
069e2925b511289e7a22630711f07b45a2067d7e

SHA-256:
5d91110d7b370750d82b7e490813a9ac9165c130f661b78f8d65c2e1815ad4c2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 1:18:29 AM UTC  (today)

File size:
5.1 MB (5,360,040 bytes)

Product version:
0.0.0.0

Copyright:
© 2010 Nefsis

File type:
Executable application (Win32 EXE)

Language:
English (Australia)

Common path:
C:\users\{user}\appdata\local\wiredred\cc\fp.exe

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
2/27/2009 8:00:00 AM

Valid to:
2/28/2011 7:59:59 AM

Subject:
CN=Nefsis, OU=Secure Application Development, O=Nefsis, L=San Diego, S=California, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
202F9665D72E8FE94D28C94FBC9067E7

File PE Metadata
Compilation timestamp:
4/3/2010 11:03:36 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:Mv8IAbsFSZYdIKIk34wbFNmDefQUfqUPQCYMKEcGenT0qGDKy8gWnNKREj/Y1:MXl5FscwC/KEc3vRJwRE01

Entry address:
0x3D6714

Entry point:
55, 8B, EC, 83, C4, F0, B8, 3C, A5, 7C, 00, E8, 40, 48, C3, FF, A1, 38, 28, 7E, 00, 8B, 00, E8, 54, 4D, D2, FF, A1, 38, 28, 7E, 00, 8B, 00, BA, 78, 67, 7D, 00, E8, 5F, 47, D2, FF, 8B, 0D, 6C, 22, 7E, 00, A1, 38, 28, 7E, 00, 8B, 00, 8B, 15, 54, 9C, 7C, 00, E8, 43, 4D, D2, FF, A1, 38, 28, 7E, 00, 8B, 00, E8, 87, 4E, D2, FF, E8, BA, FA, C2, FF, 00, 00, B0, 04, 02, 00, FF, FF, FF, FF, 13, 00, 00, 00, 4E, 00, 65, 00, 66, 00, 73, 00, 69, 00, 73, 00, 20, 00, 46, 00, 6C, 00, 61, 00, 73, 00, 68, 00, 20, 00, 50, 00...
 
[+]

Entropy:
6.7569

Developed / compiled with:
Microsoft Visual C++

Code size:
3.8 MB (4,017,664 bytes)

Scan fp.exe - Powered by Reason Core Security