networx.exe

NetWorx

SOFTPERFECT PTY. LTD.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘New startup’.
Publisher:
SoftPerfect Research  (signed by SOFTPERFECT PTY. LTD.)

Product:
NetWorx

Description:
NetWorx Application (64-bit)

Version:
5.2.3.12156

MD5:
4ff021e1cdbd860ed399ec375468b1e3

SHA-1:
9b624358d1e5ab2d3b56d6676aea8768a79dcfdc

SHA-256:
b6a24926286c338c40d08f1f48cc0fce090bd22eff2a84f98a49f857262d7f22

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

False Positives:
A number of engines detected this file but were erroneous detections (false positives).

Analysis date:
4/23/2024 7:54:38 PM UTC  (today)

File size:
4.5 MB (4,705,320 bytes)

Product version:
5.2.3.12156

Copyright:
2002-2012 SoftPerfect Research

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\networx\networx.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/15/2009 4:20:26 PM

Valid to:
12/15/2012 4:20:24 PM

Subject:
CN=SOFTPERFECT PTY. LTD., O=SOFTPERFECT PTY. LTD., L=KENSINGTON PARK, S=SOUTH AUSTRALIA, C=AU

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012592AB6709

File PE Metadata
Compilation timestamp:
6/4/2012 3:06:37 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:fCjAuN3bq4IricSZFGO5COZJoryMvlQtTh5gMk6rBWJZ50svn:KT4OnRMvAz

Entry address:
0x307F00

Entry point:
55, 53, 48, 83, EC, 58, 48, 8B, EC, 48, C7, 45, 28, 00, 00, 00, 00, 48, C7, 45, 48, 00, 00, 00, 00, 48, C7, 45, 40, 00, 00, 00, 00, 48, C7, 45, 38, 00, 00, 00, 00, 48, C7, 45, 30, 00, 00, 00, 00, 90, 48, 8D, 0D, 87, 1D, FF, FF, E8, B2, 8D, D0, FF, 90, 48, 8D, 0D, 16, 04, 00, 00, E8, D5, D3, D2, FF, 84, C0, 0F, 85, 89, 03, 00, 00, 48, 8D, 0D, 1E, 04, 00, 00, E8, C1, D3, D2, FF, 84, C0, 0F, 85, 75, 03, 00, 00, 48, 8D, 0D, 2A, 04, 00, 00, E8, AD, D3, D2, FF, 84, C0, 75, 10, 48, 8D, 0D, 3A, 04, 00, 00, E8, 9D...
 
[+]

Code size:
3 MB (3,175,936 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
New startup

Command:
"C:\Program Files\networx\networx.exe"