networkwizardloader-259ccafc.exe

Cloudpath

Cloudpath Networks, Inc.

Publisher:
Ruckus Wireless, Inc.  (signed by Cloudpath Networks, Inc.)

Product:
Cloudpath

Version:
5.00.0586

MD5:
a6538a6a5c9493dd775244afa443ca91

SHA-1:
34834bd6ed4b62dc4197f477d7784598dae5b739

SHA-256:
8fdbf6ffb9d1ed1e57b46826048d864d91cd767bd414790acc777d7eb885ad9e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/4/2024 8:13:50 AM UTC  (today)

File size:
704.9 KB (721,776 bytes)

Product version:
5.00.0586

Copyright:
Copyright 2006-2016, Ruckus Wireless, Inc.

Original file name:
xc_loader_exe.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\networkwizardloader-259ccafc.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
1/19/2015 4:00:00 PM

Valid to:
1/19/2017 3:59:59 PM

Subject:
CN="Cloudpath Networks, Inc.", O="Cloudpath Networks, Inc.", L=Westminster, S=Colorado, C=US

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
28F7B6AE928C3F1839672F75684D5E1D

File PE Metadata
Compilation timestamp:
12/14/2016 1:54:55 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x3808

Entry point:
68, 0C, 47, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, F3, B2, 41, 02, C9, 4B, 17, 43, B9, C5, 6F, A1, 23, DA, B8, DE, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 49, 00, 86, 50, 83, 01, 78, 63, 5F, 6C, 6F, 61, 64, 65, 72, 5F, 65, 78, 65, 00, 94, 01, 00, 00, 00, 00, FF, CC, 31, 00, 20, D2, 51, DE, F4, 86, 7D, 1F, 43, 91, 60, 9A, 83, 34, 88, E5, 66, 5A, F4, 22, 30, 4B, BF, 57, 45, 95, 53, B8, 30, 27, 1F, 76, 4F, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00...
 
[+]

Entropy:
5.6388

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
216 KB (221,184 bytes)

The file networkwizardloader-259ccafc.exe has been seen being distributed by the following URL.

https://onboard.cloudpath.net/enroll/StanfordUniversity/StanfordSecureWiFi/wizard/209/.../NetworkWizardLoader.exe

Scan networkwizardloader-259ccafc.exe - Powered by Reason Core Security