kurupiraWF.exe

Kurupira Web Filter

KURUPIRA.NET

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘KurupiraNet’.
Publisher:
KURUPIRA.NET  (signed and verified)

Product:
Kurupira Web Filter

Version:
1.00.0034

MD5:
4e5e236ea2db90c8a7cbbfd12dbef688

SHA-1:
f7b56df4ab48dc73599fbd2b91d027a40b21e3e3

SHA-256:
c0856b0238d8de8f5723e589a9609b6e92d257a34ca890416811e49e17449f89

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 3:25:28 PM UTC  (today)

File size:
7.4 MB (7,768,248 bytes)

Product version:
1.00.0034

Copyright:
Kurupira.NET (c)

Trademarks:
Kurupira.NET (c)

Original file name:
kurupiraWF.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\kurupira\webfilter\kurupirawf.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/22/2012 2:00:00 AM

Valid to:
5/23/2015 1:59:59 AM

Subject:
CN=KURUPIRA.NET, O=KURUPIRA.NET, STREET="R. CRISTIANO OTONI, 275, SL 113", L=PEDRO LEOPOLDO, S=MG, PostalCode=33600-000, C=BR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
05F4AEE4F7D8C03989A29984E7DA6B83

File PE Metadata
Compilation timestamp:
2/27/2014 9:57:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:LnrlJh6+Hqk9b44413iZj/VP/GvAabz7ptGbT:LY+Hqk9U3iZj/VP/GvA0pY

Entry address:
0x33554

Entry point:
68, 94, 3E, 43, 00, E8, F0, FF, FF, FF, 00, 00, 60, 00, 00, 00, 30, 00, 00, 00, 58, 00, 00, 00, 40, 00, 00, 00, 11, 5C, 90, 3E, 23, 95, A6, 49, 9C, 6A, CA, 52, D9, 5A, 6C, 76, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 41, 00, 86, 50, AB, 02, 4B, 75, 72, 75, 70, 69, 72, 61, 57, 46, 00, 00, 8C, 4E, E9, 02, 4B, 75, 72, 75, 70, 69, 72, 61, 20, 57, 65, 62, 20, 46, 69, 6C, 74, 65, 72, 00, 00, 00, 00, 00, 00, 00, 00, 00, 14, B0, E9, 02, D8, 00, 00, 00, A8, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 82, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
7.4 MB (7,737,344 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
KurupiraNet

Command:
"C:\Program Files\kurupira\webfilter\kurupirawf.exe"


Scan kurupiraWF.exe - Powered by Reason Core Security