NCEventProvider.exe

AdRem NetCrunch

AdRem Software sp. z o.o.

Publisher:
AdRem Software, Inc.  (signed by AdRem Software sp. z o.o.)

Product:
AdRem NetCrunch

Description:
NetCrunch Event Details Plugin

Version:
9.3.3.3896

MD5:
3373292fe9f67f4dad81796e79932566

SHA-1:
74a59caf2228e9ec8f3bbed65f531c844f4df860

SHA-256:
4a1130ff4f6cb97ca41cd88a4c8c62d4850ad55f97cc5899b66eb44baba4f916

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/2/2025 6:14:17 AM UTC  (today)

File size:
6.8 MB (7,119,824 bytes)

Product version:
9.3.0.0

Copyright:
2016-2017 (c) AdRem Software Inc., all rights reserved

Original file name:
NCEventProvider.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\adrem\netcrunch\server\9.0\clientplugins\nceventprovider.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
12/19/2016 4:00:00 PM

Valid to:
12/28/2019 3:59:59 PM

Subject:
CN=AdRem Software sp. z o.o., O=AdRem Software sp. z o.o., L=Krakow, S=malopolska, C=PL

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
626947118005F7A29719709F3D3292CF

File PE Metadata
Compilation timestamp:
1/5/2017 7:03:51 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
8.0

Entry address:
0x4B4B10

Entry point:
55, 48, 83, EC, 20, 48, 8B, EC, 48, 8B, 05, 19, 1B, 0A, 00, C6, 00, 01, 90, 48, 8D, 0D, A6, 00, 00, 00, E8, D1, 6D, B6, FF, 90, 48, 8B, 0D, 79, FE, FF, FF, B2, 01, E8, F2, 90, B5, FF, 48, 89, 05, 1B, 1F, 13, 00, 48, 8D, 0D, 1C, 1F, 13, 00, 48, 83, 3D, 0C, 1F, 13, 00, 00, 75, 09, 48, 8B, 15, 03, 1F, 13, 00, EB, 0B, 48, 8B, 05, FA, 1E, 13, 00, 48, 8D, 50, 10, E8, A1, 2B, B6, FF, 48, 8B, 0D, 6A, EB, FF, FF, 48, 83, 3D, E2, 1E, 13, 00, 00, 75, 09, 48, 8B, 15, D9, 1E, 13, 00, EB, 0B, 48, 8B, 05, D0, 1E, 13, 00...
 
[+]

Entropy:
6.0762

Code size:
4.9 MB (5,088,768 bytes)

Scan NCEventProvider.exe - Powered by Reason Core Security