fp.exe

Nefsis

Publisher:
Nefsis  (signed and verified)

Description:
Nefsis Conference Client

Version:
5.2.0.270

MD5:
b2de2717dc1b7711a45081fc8987a864

SHA-1:
1ef1aef075b8c9913ab3c37fc1b2140835504b11

SHA-256:
1b7b68e40bc27d89512e853d0121afad548290faea849cd55bd7b2e8d7aeff77

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 12:12:31 PM UTC  (today)

File size:
3.9 MB (4,124,072 bytes)

Product version:
0.0.0.0

Copyright:
© 2009 Nefsis

File type:
Executable application (Win32 EXE)

Language:
English (Australia)

Common path:
C:\users\{user}\appdata\local\wiredred\cc\fp.exe

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
2/26/2009 7:00:00 PM

Valid to:
2/27/2011 6:59:59 PM

Subject:
CN=Nefsis, OU=Secure Application Development, O=Nefsis, L=San Diego, S=California, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
202F9665D72E8FE94D28C94FBC9067E7

File PE Metadata
Compilation timestamp:
11/7/2009 8:57:41 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:tXQT6XY29Qd1lEN0NVun4KbXz1gKox5mZdPU1yrTSpC8NclgSWEB/mYhXg:y2wwN0NVmjqKox5mHPU1yLPWEZzhXg

Entry address:
0x2CB27C

Entry point:
55, 8B, EC, 83, C4, F0, B8, 10, 77, 6C, 00, E8, C0, D8, D3, FF, A1, F4, 6C, 6D, 00, 8B, 00, E8, 6C, 59, DE, FF, A1, F4, 6C, 6D, 00, 8B, 00, BA, E0, B2, 6C, 00, E8, BF, 53, DE, FF, 8B, 0D, 64, 67, 6D, 00, A1, F4, 6C, 6D, 00, 8B, 00, 8B, 15, DC, 6F, 6C, 00, E8, 5B, 59, DE, FF, A1, F4, 6C, 6D, 00, 8B, 00, E8, 9F, 5A, DE, FF, E8, 6A, 9D, D3, FF, 00, 00, B0, 04, 02, 00, FF, FF, FF, FF, 13, 00, 00, 00, 4E, 00, 65, 00, 66, 00, 73, 00, 69, 00, 73, 00, 20, 00, 46, 00, 6C, 00, 61, 00, 73, 00, 68, 00, 20, 00, 50, 00...
 
[+]

Entropy:
6.8052

Developed / compiled with:
Microsoft Visual C++

Code size:
2.8 MB (2,925,056 bytes)

Scan fp.exe - Powered by Reason Core Security