frwl_set.exe

Dr.Web

Doctor Web Ltd.

Publisher:
Doctor Web, Ltd.  (signed by Doctor Web Ltd.)

Product:
Dr.Web ®

Description:
Dr.Web Firewall ® for Windows settings module

Version:
6.0.0.03021

MD5:
bd60f38eb6e861085f5f5ff7f082e859

SHA-1:
05e7305d35b234823d094cd5c00c165ee1d33231

SHA-256:
88cd1b5ddaf8e82436e4bacb80772f6b00fa529e50a70cba25534398f7fdec00

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 5:14:45 AM UTC  (today)

File size:
2.6 MB (2,759,432 bytes)

Product version:
6.0.0.03021

Copyright:
© Doctor Web, Ltd., 1992-2010

Original file name:
frwl_sett.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\drweb\frwl_set.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/8/2008 3:00:00 AM

Valid to:
10/8/2011 2:59:59 AM

Subject:
CN=Doctor Web Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Doctor Web Ltd., S=Saint-Petersburg, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0D34695F3DF1206DA6579A0DB785C25F

File PE Metadata
Compilation timestamp:
3/2/2010 2:41:47 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:ae2S3Z9m8uSpH8iAKW+5MoONsDOZlggiEePTz5kffY/ZjXdzLRCG5UWB/tuPG9z:T2Szm8uShtAK/5MVs6ZoEeLzYqZrcGR

Entry address:
0x946E0

Entry point:
51, 56, E8, 10, 11, FD, FF, 68, C0, 46, 49, 00, FF, 15, A0, A2, 50, 00, 68, 58, 7A, 5E, 00, FF, 15, 30, A2, 50, 00, 8B, F0, 85, F6, 74, 31, 68, 74, 7A, 5E, 00, 56, FF, 15, 38, A2, 50, 00, 85, C0, 74, 1A, 8D, 4C, 24, 04, 51, 6A, 05, 68, 50, 71, 63, 00, 50, FF, 15, 9C, A2, 50, 00, 50, FF, 15, 98, A2, 50, 00, 56, FF, 15, 3C, A2, 50, 00, 5E, 83, C4, 04, E9, F6, 12, FD, FF, CC, CC, CC, 05, 68, 02, 00, 00, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 05, 3C, 02, 00, 00, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC...
 
[+]

Code size:
1 MB (1,082,880 bytes)

Scan frwl_set.exe - Powered by Reason Core Security