nbmeasure.exe

Networkbench Systems Corp.

Publisher:
北京基调网络系统有限公司  (signed by Networkbench Systems Corp.)

Version:
6.0.0.108

MD5:
2bf758d9c547364829f29d65a845c849

SHA-1:
e9ed0f6a3c7fe10c5647172733039bf677ac0c0f

SHA-256:
69840bdbe234635a9b01423d1ce1b8521003c3d158a28849f1aedc1c6571c9f7

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/18/2024 1:28:58 AM UTC  (today)

Scan engine
Detection
Engine version

Norman
Obfuscated_NA
11.20160217

Trend Micro House Call
Suspicious_GEN.F47V0203
7.2.48

File size:
1.5 MB (1,617,208 bytes)

Product version:
6.0.0.0

File type:
Executable application (Win32 EXE)

Language:
Cinese (RPC)

Common path:
C:\Program Files\networkbench.com\networkbench\nbmeasure.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/11/2012 2:00:00 AM

Valid to:
4/12/2015 1:59:59 AM

Subject:
CN=Networkbench Systems Corp., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Networkbench Systems Corp., L=beijing, S=beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
32C413866F990D7B1D5C8F9AA5ECB2F6

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:5/Yw+NBX46lq7EXYUnCl/22zhHzcTPTod:5/3EX1nCB1hd

Entry address:
0x153A8C

Entry point:
55, 8B, EC, 81, C4, DC, FE, FF, FF, 53, 56, 57, 33, C0, 89, 45, E4, 89, 45, E0, 89, 45, DC, 89, 45, EC, 89, 45, E8, B8, BC, 15, 55, 00, E8, 39, 39, EB, FF, 33, C0, 55, 68, 4A, 3C, 55, 00, 64, FF, 30, 64, 89, 20, 6A, 03, E8, A8, 3E, EB, FF, 6A, EC, A1, 4C, 03, 56, 00, 8B, 00, 8B, 40, 30, 50, E8, DE, 44, EB, FF, 8B, 15, D4, 01, 56, 00, 80, 3A, 00, 74, 1C, 85, C0, 74, 18, 05, 80, 00, 00, 00, 50, 6A, EC, A1, 4C, 03, 56, 00, 8B, 00, 8B, 40, 30, 50, E8, 07, 47, EB, FF, A1, 4C, 03, 56, 00, 8B, 00, E8, 47, 11, F1...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.3 MB (1,387,520 bytes)

Windows Firewall Allowed Program
Name:
C:\Programmi\NetworkBench.Com\NetworkBench\NBMeasure.exe


Scan nbmeasure.exe - Powered by Reason Core Security