networx.exe

NetWorx

SOFTPERFECT PTY. LTD.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NetWorx’.
Publisher:
SoftPerfect Research  (signed by SOFTPERFECT PTY. LTD.)

Product:
NetWorx

Description:
NetWorx Application (32-bit)

Version:
5.3.3.14295

MD5:
3b24d9b72ad5488c2414b68d2e1afca3

SHA-1:
4ac252fbd0f30c03a602ffaeec75c3c721472ab4

SHA-256:
a41e8e185dbc27685207b1329c7253dfde15246e5c5d425200fb1808cf81a324

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 1:19:34 PM UTC  (today)

File size:
4.3 MB (4,461,264 bytes)

Product version:
5.3.3.14295

Copyright:
2002-2014 SoftPerfect Research

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\networx\networx.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/17/2012 2:59:41 PM

Valid to:
12/17/2015 1:59:41 PM

Subject:
CN=SOFTPERFECT PTY. LTD., O=SOFTPERFECT PTY. LTD., L=KENSINGTON PARK, S=SOUTH AUSTRALIA, C=AU

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121D3E3CF8CC5546295D1696F43CEF8BA42

File PE Metadata
Compilation timestamp:
10/22/2014 5:06:58 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:i8+BgUlBIdKjZyS3u9hjklSYhJuV8uWcaI2fj5PurYYJp8ysvnB:YBgx9QS1SuWtI61Z

Entry address:
0x3088A8

Entry point:
55, 8B, EC, 83, C4, EC, 53, 56, 57, 33, C0, 89, 45, EC, B8, 88, D7, 6F, 00, E8, EC, 2F, D0, FF, 33, C0, 55, 68, DD, 8B, 70, 00, 64, FF, 30, 64, 89, 20, B8, F8, 8B, 70, 00, E8, E0, D2, D1, FF, 84, C0, 74, 11, A1, F8, 19, 71, 00, 8B, 00, E8, 1C, FD, F1, FF, E9, DA, 02, 00, 00, B8, 14, 8C, 70, 00, E8, C1, D2, D1, FF, 84, C0, 74, 11, A1, F8, 19, 71, 00, 8B, 00, E8, 89, 08, F2, FF, E9, BB, 02, 00, 00, B8, 34, 8C, 70, 00, E8, A2, D2, D1, FF, 84, C0, 75, 0E, B8, 54, 8C, 70, 00, E8, 94, D2, D1, FF, 84, C0, 74, 1D...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
3 MB (3,178,496 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NetWorx

Command:
"C:\Program Files\networx\networx.exe" \auto


Scan networx.exe - Powered by Reason Core Security