getsky.exe

Get Safe

Jotta AS

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Get Safe’.
Publisher:
GET AS  (signed by Jotta AS)

Product:
Get Safe

Version:
3.1.61.564

MD5:
b57456bf380af190f4fd9e51171845b9

SHA-1:
02d8bc82ced5856fdc133e62ba7c81f06dc88f73

SHA-256:
78007c0462ef04058e246923c37269770bd97d23ff55aa6d72e6844b543a02df

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/21/2024 9:56:45 AM UTC  (today)

File size:
9 MB (9,430,720 bytes)

Copyright:
Copyright GET AS

Original file name:
get.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\get sky\getsky.exe

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
9/10/2015 2:00:00 AM

Valid to:
9/10/2017 1:59:59 AM

Subject:
CN=Jotta AS, O=Jotta AS, L=Oslo, S=Oslo, C=NO

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
08CFB1B849E32DA38221280A99C6B5CE

File PE Metadata
Compilation timestamp:
1/23/2017 5:57:31 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x2ABF00

Entry point:
E8, 8E, 05, 00, 00, E9, 63, FD, FF, FF, CC, CC, CC, CC, CC, CC, 8B, 44, 24, 08, 8B, 4C, 24, 10, 0B, C8, 8B, 4C, 24, 0C, 75, 09, 8B, 44, 24, 04, F7, E1, C2, 10, 00, 53, F7, E1, 8B, D8, 8B, 44, 24, 08, F7, 64, 24, 14, 03, D8, 8B, 44, 24, 08, F7, E1, 03, D3, 5B, C2, 10, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 53, 56, 8B, 44, 24, 18, 0B, C0, 75, 18, 8B, 4C, 24, 14, 8B, 44, 24, 10, 33, D2, F7, F1, 8B, D8, 8B, 44, 24, 0C, F7, F1, 8B, D3, EB, 41, 8B, C8, 8B, 5C, 24, 14, 8B, 54, 24, 10, 8B, 44, 24, 0C...
 
[+]

Code size:
4.3 MB (4,471,296 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Get Safe

Command:
"C:\Program Files\get sky\getsky.exe"


Scan getsky.exe - Powered by Reason Core Security