IMNOTFY.EXE

IncrediMail

IncrediMail Ltd.

Publisher:
IncrediMail, Ltd.  (signed by IncrediMail Ltd.)

Product:
IncrediMail

Description:
IncrediMail Notifier

Version:
5, 7, 0, 3505

MD5:
81f30b9a2dcd3f869c94cd4759ffae73

SHA-1:
781ee06d6e1681d880c27d38885e3510a8a46927

SHA-256:
4367cd33acc0e01e6a04a36a26bb96aea4da44cd94db781bf746361bd2d12dff

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/19/2024 4:52:15 PM UTC  (today)

Scan engine
Detection
Engine version

Prevx
Malicious Software
3.0.2

File size:
233.4 KB (238,976 bytes)

Product version:
5, 7, 0, 3505

Copyright:
Copyright © 2002 IncrediMail, Ltd.

Original file name:
IMNOTFY.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\incredimail\bin\imnotfy.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/20/2006 1:00:00 AM

Valid to:
8/11/2009 12:59:59 AM

Subject:
CN=IncrediMail Ltd., OU=R&D, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=IncrediMail Ltd., L=Tel-Aviv, S=Israel, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4E561C79A395E9186D497EACD1667CC8

File PE Metadata
Compilation timestamp:
4/3/2008 7:45:20 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:tAnpVwIIIgvgOcEbBycWXnXZXwyd6JHohzsu8Gl3ecnUvhqdM9fwqQOJtG0too:kKb8jHZXCHaA3GdbnUv4AQO3GC

Entry address:
0x1BD5C

Entry point:
E8, 17, 06, 00, 00, E9, DA, FC, FF, FF, FF, 25, 0C, 1B, 42, 00, FF, 25, 10, 1B, 42, 00, FF, 25, 14, 1B, 42, 00, FF, 25, 18, 1B, 42, 00, FF, 25, 00, 1B, 42, 00, FF, 25, FC, 1A, 42, 00, 8B, C1, C7, 00, 70, 62, 42, 00, C2, 04, 00, 53, 8A, 5C, 24, 08, F6, C3, 02, 56, 8B, F1, 74, 24, 57, 68, 40, C5, 41, 00, 8D, 7E, FC, FF, 37, 6A, 0C, 56, E8, C2, 01, 00, 00, F6, C3, 01, 74, 07, 57, E8, 0A, F6, FF, FF, 59, 8B, C7, 5F, EB, 13, E8, 75, 07, 00, 00, F6, C3, 01, 74, 07, 56, E8, F4, F5, FF, FF, 59, 8B, C6, 5E, 5B, C2...
 
[+]

Code size:
128 KB (131,072 bytes)

The file IMNOTFY.EXE has been discovered within the following program.

IncrediMail Xe  by Perion Network Ltd.
Publisher's description - “IncrediMail is an email client that makes emailing more fun than before.”
www.incredimail.com
24% remove it
 
Powered by Should I Remove It?

Scan IMNOTFY.EXE - Powered by Reason Core Security