ifns.exe

Sowsoft LLC

Publisher:
Sowsoft LLC  (signed and verified)

MD5:
f45ce798e56bfa5ec31d1bbd640e9f7a

SHA-1:
9adfe0fc1d52862bbd0ce7692c150e1c09752b7f

SHA-256:
262a582a83c4ba09d0483fccf8b7335ad72e6b5786658787eadcf0ba09306208

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/27/2024 4:13:28 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Trojan.Fakealert.origin
9.0.1.05190

File size:
742.2 KB (760,040 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ifns\ifns.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/27/2011 8:00:00 PM

Valid to:
7/27/2013 7:59:59 PM

Subject:
CN=Sowsoft LLC, O=Sowsoft LLC, STREET="Prospect Mira, d.75, str. 1", L=Moscow, S=Moscow, PostalCode=129110, C=RU

Issuer:
CN=COMODO Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
10CDC7CCFE3D2396252D042EEE61DDF1

File PE Metadata
Compilation timestamp:
6/19/1992 6:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:yjaiA5fsbqbIFCYNoe4+J7wj9MxAqNcAeQWMASAhR3javufoi:yWp5HbI0YZJkjcAQcAeYAD34i

Entry address:
0x96A14

Entry point:
55, 8B, EC, B9, 04, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, 56, 57, B8, F8, 4F, 49, 00, E8, 7B, 04, F7, FF, 8B, 3D, 50, 91, 49, 00, 33, C0, 55, 68, 8E, 6D, 49, 00, 64, FF, 30, 64, 89, 20, E8, 92, E4, FF, FF, A1, 98, 8F, 49, 00, 8B, 00, E8, 06, 9F, FD, FF, A1, 98, 8F, 49, 00, 8B, 00, BA, A8, 6D, 49, 00, E8, 75, 99, FD, FF, 8B, 0D, F8, 8C, 49, 00, A1, 98, 8F, 49, 00, 8B, 00, 8B, 15, 44, ED, 48, 00, E8, F5, 9E, FD, FF, 8B, 0D, F4, 8C, 49, 00, A1, 98, 8F, 49, 00, 8B, 00, 8B, 15, 8C, CD, 48, 00, E8, DD...
 
[+]

Entropy:
6.6570

Developed / compiled with:
Microsoft Visual C++

Code size:
596.5 KB (610,816 bytes)

Scan ifns.exe - Powered by Reason Core Security