NPE.exe

Norton Power Eraser

Symantec Corporation

This is a setup program which is used to install the application. The file has been seen being downloaded from liveupdate.symantec.com.
Publisher:
Symantec Corporation  (signed and verified)

Product:
Norton Power Eraser

Version:
4.3.5.28

MD5:
42b462e9d2a2578a21f5664a5e1b09f6

SHA-1:
72f8e7ff0dc0ef96f5b029592a7ac4994af3cc3a

SHA-256:
3aeee3071cfe3e7cd24a155d526c5ab9aeb516d54295669fe4fdbf7ecee2ddc0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 3:56:03 AM UTC  (today)

File size:
2.9 MB (3,076,752 bytes)

Product version:
4.3

Copyright:
Copyright (c) 1997-2014 Symantec Corporation

Original file name:
NPE.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/19/2013 8:00:00 AM

Valid to:
11/17/2014 7:59:59 AM

Subject:
CN=Symantec Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Endpoint Protection & Productivity, O=Symantec Corporation, L=Culver City, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2BBAF83D7BEDD958309D62B93EE41074

File PE Metadata
Compilation timestamp:
9/9/2014 12:17:31 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
49152:U9BxQMXFGRqOWM2yY2QcUGoX34fHy5O7KFy6nA1GUdT8+PllrU7eh43PX:+PXFGRq1M2yBXUGmoSO+s6nA1hdT8+PG

Entry address:
0x20397A

Entry point:
B8, 7C, B8, D6, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, AA, 67, 9E, D8, 02, 2E, E0, A3, ED, 62, 00, 15, 4A, B7, 77, 97, 19, 90, 25, 9E, 53, C1, F6, 8E, 48, 9A, 40, 96, 7C, 96, 2E, 4E, 1E, 7F, F8, 78, E7, CC, 60, FA, 7F, 0B, 27, 5B, 02, 87, FC, 90, 23, 30, A7, 19, 59, 47, EC, A4, 10, BB, EF, B0, C5, EC, 40, AC, FE, 54, EF, 7C, 9F, 43, 16, 5A, B5, FF, 36, D2, DC, 24, DC, 72, BB, 7C, AC, 60, DE, 90, 3B, 38, 3C, FD, 2B, 91, 80...
 
[+]

Entropy:
7.9780

Packer / compiler:
PECompact v2

Code size:
5.8 MB (6,029,312 bytes)

The file NPE.exe has been seen being distributed by the following URL.