npnuninst.exe

nProtect Netizen 4X Uninstaller

INCA Internet. Co., Ltd.

Publisher:
INCA Internet. Co., Ltd.  (signed and verified)

Product:
nProtect Netizen 4X Uninstaller

Version:
2009, 3, 13, 1

MD5:
ea36bc86be17ef1137ff2b69b2f5d485

SHA-1:
d9f6972edc1eec25d9347c30d7242c72d5f80d9c

SHA-256:
040bed26e9709e4be02a3c2bd20f923352cfddc11e04fb09dfc0bcd1c48a71c4

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/26/2024 4:04:43 AM UTC  (today)

Scan engine
Detection
Engine version

Norman
W32/SuspiciousPE.E
11.20151223

File size:
65.5 KB (67,120 bytes)

Product version:
2009, 3, 13, 1

Copyright:
Copyright INCAInternet(C) 2008

Original file name:
npnunins.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Windows\System32\npnuninst.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
2/12/2009 5:23:13 PM

Valid to:
2/22/2011 6:41:12 PM

Subject:
CN="INCA Internet. Co., Ltd.", OU=Development Department, O="INCA Internet. Co., Ltd.", L=SEOUL, S=GYEONGGI-DO, C=KR

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
1022D11D20A04F0743BCA8E46BD245E3

File PE Metadata
Compilation timestamp:
1/30/1987 12:38:08 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
768:wyRkRozlTRTMn+nHn/JL4CAbx2p1dSk/intrwWUUQ9tGin4Lc3:ns8lMQnxhAbxuSk/HVtGin4w

Entry address:
0x16E8

Entry point:
E8, 19, 25, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 51, 56, 8B, 75, 0C, 56, E8, 1B, 30, 00, 00, 89, 45, 0C, 8B, 46, 0C, A8, 82, 59, 75, 17, E8, 5E, 0D, 00, 00, C7, 00, 09, 00, 00, 00, 83, 4E, 0C, 20, 83, C8, FF, E9, 2D, 01, 00, 00, A8, 40, 74, 0D, E8, 43, 0D, 00, 00, C7, 00, 22, 00, 00, 00, EB, E3, 53, 33, DB, A8, 01, 74, 16, A8, 10, 89, 5E, 04, 0F, 84, 85, 00, 00, 00, 8B, 4E, 08, 83, E0, FE, 89, 0E, 89, 46, 0C, 8B, 46, 0C, 83, E0, EF, 83, C8, 02, 66, A9, 0C, 01, 89, 46, 0C, 89, 5E, 04, 89, 5D, FC, 75, 2C...
 
[+]

Entropy:
5.9911

Code size:
36 KB (36,864 bytes)

ActiveX Install
Name:
{DC4207CE-C03E-4449-ACB1-032CA4137053}


Scan npnuninst.exe - Powered by Reason Core Security