NBMonitor.EXE

NBMonitor Network Bandwidth Monitor

Nsasoft US LLC

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NBMonitor’.
Publisher:
Nsasoft LLC.  (signed by Nsasoft US LLC)

Product:
NBMonitor Network Bandwidth Monitor

Version:
1, 5, 6, 0

MD5:
a9dad3e285b0203f6cb4c234c87b12a4

SHA-1:
95d5c6aecf490ead23eb198f7be4aa95f05411b0

SHA-256:
9aac3a896e5cd350280f74e7bc84f8934a2744e1221f5a832bce3291f81d80cb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:10:58 PM UTC  (today)

File size:
1.8 MB (1,857,656 bytes)

Product version:
1, 5, 6, 0

Copyright:
Copyright (C) Nsasoft LLC.

Trademarks:
Nsasoft,Nsauditor

Original file name:
NBMonitor.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\nsasoft\nbmonitor\nbmonitor.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
11/28/2013 2:00:00 AM

Valid to:
11/29/2014 1:59:59 AM

Subject:
CN=Nsasoft US LLC, O=Nsasoft US LLC, POBox=2660, STREET=2215-B Renaissance Drive, L=Las Vegas, S=Nevada, PostalCode=89119, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
14F329982BE1A6626F48A33C38FFE5F6

File PE Metadata
Compilation timestamp:
4/24/2014 6:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
83.82

CTPH (ssdeep):
49152:9EMXAhNnEse6FHTgmWSXjeQgzZ9Zr6UZp:hQHnEse4+9ZrZP

Entry address:
0x14A000

Entry point:
60, E8, 00, 00, 00, 00, 5D, 50, 51, 0F, CA, F7, D2, 9C, F7, D2, 0F, CA, EB, 0F, B9, EB, 0F, B8, EB, 07, B9, EB, 0F, 90, EB, 08, FD, EB, 0B, F2, EB, F5, EB, F6, F2, EB, 08, FD, EB, E9, F3, EB, E4, FC, E9, 9D, 0F, C9, 8B, CA, F7, D1, 59, 58, 50, 51, 0F, CA, F7, D2, 9C, F7, D2, 0F, CA, EB, 0F, B9, EB, 0F, B8, EB, 07, B9, EB, 0F, 90, EB, 08, FD, EB, 0B, F2, EB, F5, EB, F6, F2, EB, 08, FD, EB, E9, F3, EB, E4, FC, E9, 9D, 0F, C9, 8B, CA, F7, D1, 59, 58, 50, 51, 0F, CA, F7, D2, 9C, F7, D2, 0F, CA, EB, 0F, B9, EB...
 
[+]

Packer / compiler:
ASPack v1.08.04

Code size:
700 KB (716,800 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NBMonitor

Command:
C:\Program Files\nsasoft\nbmonitor\nbmonitor.exe


Scan NBMonitor.EXE - Powered by Reason Core Security