NPE.exe

Norton Power Eraser

Symantec Corporation

This is a setup program which is used to install the application. The file has been seen being downloaded from liveupdate.symantec.com.
Publisher:
Symantec Corporation  (signed and verified)

Product:
Norton Power Eraser

Version:
3.0.0.21

MD5:
8b5649532d6d81b6928de97058a9b159

SHA-1:
e5a32917cb8f396d948ee60d6a07b0cc47946b22

SHA-256:
24fa39a0149e3d76f69d6d70269cfe52f113235a37e069ba0f1f8675b39f2dcb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 3:46:42 PM UTC  (today)

File size:
2.7 MB (2,846,784 bytes)

Product version:
3.0

Copyright:
Copyright (c) 1997-2012 Symantec Corporation

Original file name:
NPE.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/7/2010 7:00:00 PM

Valid to:
11/23/2013 6:59:59 PM

Subject:
CN=Symantec Corporation, OU=Symantec Research Labs, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Symantec Corporation, L=Santa Monica, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
66660552D465B31F429F7527EA6A93BF

File PE Metadata
Compilation timestamp:
6/8/2012 12:11:52 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:ouyCTIxC2zp1foNODb73MNimCNcjXXT7b+9umXb5nKWSKcn1YnsjwqpIZnWvjByn:RZMfz1DPRQjS5nKWZU1tkPWvjw

Entry address:
0x1000

Entry point:
B8, 3C, 7C, D1, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 5C, CD, 9D, 78, 2E, 11, 91, 48, 97, 7E, AC, EE, BE, BA, D1, 3A, 43, CF, 95, AA, D5, BD, EB, 22, F7, 06, A4, 26, 6A, 22, DC, 46, B0, 71, 8F, 06, 2D, 9F, 4C, 3F, B0, 2D, 7A, 0F, B5, 37, 8A, 22, 4D, CA, E5, 9C, 5D, 6B, F3, B9, 1F, 1F, 7A, C7, 09, EF, E0, B8, C1, 81, 62, CC, 3B, B3, B8, 07, 14, 76, A5, 58, A0, 49, 70, 0B, 8E, B9, 23, 85, 72, 59, F7, 1D, 66, 17, 2A, 18, 62...
 
[+]

Entropy:
7.9757

Packer / compiler:
PECompact v2

Code size:
5.7 MB (5,958,656 bytes)

The file NPE.exe has been seen being distributed by the following URL.