netanimate.exe

NetAnimate

Ilgam Zyulkorneev

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘NetAnimate’.
Publisher:
Ilgam Zyulkorneev  (signed and verified)

Product:
NetAnimate

Description:
Network Activity Animation Tool

Version:
1.5.0.0

MD5:
9da85360ea9e55224e058e82909f1835

SHA-1:
87b0f445782dc7e2352a5e6de146ee530a6a2283

SHA-256:
cd9c9af0f51e593bc9ec2179101ba12dd6ce8b23a27f12ea8886bf388d723607

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:37:31 AM UTC  (today)

File size:
2.9 MB (3,055,368 bytes)

Product version:
1.5.0.0

Copyright:
Ilham Z.

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\netanimate\netanimate.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
6/3/2010 9:00:00 AM

Valid to:
6/3/2013 8:59:59 AM

Subject:
CN=Ilgam Zyulkorneev, O=Ilgam Zyulkorneev, STREET="Ak. Gubkina 52a, 28", L=Kazan, S=Tatarstan, PostalCode=420088, C=RU

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
2E6BAF44F3885373E0703F8226C8ADFD

File PE Metadata
Compilation timestamp:
3/23/2013 4:53:08 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:B20sSbe75RT6QGYz7iGgqs2zGB/xI/rkjYRBBDStPD9TJSSgcfJxL5OVT5j+6C1r:T8L6QGyoRe/YsBFSLJSSgs3LST5STnh

Entry address:
0x26EA50

Entry point:
55, 48, 83, EC, 20, 48, 8B, EC, 90, 48, 8D, 0D, A8, 33, FF, FF, E8, DB, 34, DA, FF, 48, 8B, 05, 44, 42, 03, 00, 48, 8B, 08, E8, 1C, 15, FC, FF, 48, 8B, 05, 35, 42, 03, 00, 48, 8B, 08, B2, 01, E8, AB, 3F, FC, FF, 48, 8B, 05, 24, 42, 03, 00, 48, 8B, 00, C6, 80, B3, 00, 00, 00, 00, 48, 8B, 05, 13, 42, 03, 00, 48, 8B, 08, 48, 8B, 15, 21, D8, FE, FF, 4C, 8B, 05, A2, 3D, 03, 00, E8, 0D, 15, FC, FF, 48, 8B, 05, 96, 3D, 03, 00, 48, 8B, 08, E8, 5E, EB, FE, FF, 48, 8B, 05, E7, 41, 03, 00, 48, 8B, 08, E8, 5F, 17, FC...
 
[+]

Entropy:
5.9876

Code size:
2.4 MB (2,546,688 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NetAnimate

Command:
"C:\Program Files\netanimate\netanimate.exe" \tray


Scan netanimate.exe - Powered by Reason Core Security