ncppopup.exe

NCP Secure Client

NCP engineering GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NcpPopup’.
Publisher:
NCP engineering GmbH  (signed and verified)

Product:
NCP Secure Client

Description:
NCP Secure Client Popup

Version:
9.23.0.0

MD5:
180a06dbce2ec57596a8d2b88ca99e5d

SHA-1:
87dd05cc6de55db3babb7d9cc56f7e165d86250e

SHA-256:
b4a58716ebef836d7bc82f6b990921801a9b1add9e87dd1133b2be24ef38f3a8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 1:20:33 AM UTC  (today)

File size:
940.7 KB (963,312 bytes)

Product version:
9.23.0.0

Copyright:
Copyright (c) 2010

Original file name:
ncppopup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\ncp\secureclient\ncppopup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/14/2013 1:00:00 AM

Valid to:
4/13/2016 1:59:59 AM

Subject:
CN=NCP engineering GmbH, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NCP engineering GmbH, L=Nuremberg, S=Bavaria, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
15B40981E601AE6FCECECD925760A766

File PE Metadata
Compilation timestamp:
1/20/2016 11:50:21 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xC40B8

Entry point:
55, 8B, EC, 83, C4, E4, 33, C0, 89, 45, E4, 89, 45, E8, 89, 45, EC, B8, 9C, D3, 4B, 00, E8, 1D, 6A, F4, FF, 33, C0, 55, 68, C0, 41, 4C, 00, 64, FF, 30, 64, 89, 20, B8, D8, 41, 4C, 00, E8, 1D, 2E, FF, FF, 84, C0, 74, 21, B9, 94, D6, 4C, 00, BA, 14, 42, 4C, 00, B8, D8, 41, 4C, 00, E8, 8D, 2A, FF, FF, 83, 3D, 94, D6, 4C, 00, 01, 0F, 84, 95, 00, 00, 00, 8D, 55, EC, B8, 01, 00, 00, 00, E8, 67, 04, F4, FF, 8B, 45, EC, BA, 2C, 42, 4C, 00, E8, 7E, 38, F4, FF, 74, 79, 8D, 55, E8, B8, 02, 00, 00, 00, E8, 4B, 04, F4...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
777.5 KB (796,160 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NcpPopup

Command:
"C:\Program Files\ncp\secureclient\ncppopup.exe" noerrmsg


Scan ncppopup.exe - Powered by Reason Core Security