nsptray.exe

Norman Shark ICS Protection

Norman Shark AS

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NspTray’.
Publisher:
Norman Shark AS  (signed and verified)

Product:
Norman Shark ICS Protection

Description:
Norman Shark ICS Protection User Tray

Version:
1.4.6.0

MD5:
6e80609a4251e7218b0cb9b3423e4900

SHA-1:
b8f8ab6e9615e07a853d58f777f5342cf3d22768

SHA-256:
fffb9cf61459c0793c195d9cf2ae56146b9d263f2710bd820f297ff5f30b1a84

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 5:34:15 PM UTC  (today)

File size:
134.2 KB (137,408 bytes)

Product version:
1.2.0.0

Copyright:
Copyright © 2013 Norman Shark AS

Original file name:
nsptray.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\norman shark icsp\nsptray.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/17/2013 2:00:00 AM

Valid to:
9/18/2014 1:59:59 AM

Subject:
CN=Norman Shark AS, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Norman Shark AS, L=Lysaker, S=Akershus, C=NO

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5BF3F66EDEC7E0D2E1FBA7BE5D689F09

File PE Metadata
Compilation timestamp:
1/13/2014 11:45:39 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
1536:iHamIiD0eDf9rE49sGM7jSLufcN7sWjcdg84/spnAQe894ig:cloeDf9Yp1732EgJOAQN94X

Entry address:
0x7E75

Entry point:
E8, 32, 17, 00, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, 83, EC, 20, 83, 65, E0, 00, 57, 6A, 07, 33, C0, 59, 8D, 7D, E4, F3, AB, 39, 45, 14, 75, 18, E8, 68, 03, 00, 00, C7, 00, 16, 00, 00, 00, E8, 97, 0B, 00, 00, 83, C8, FF, E9, 93, 00, 00, 00, 8B, 7D, 0C, 56, 8B, 75, 10, 85, F6, 74, 19, 85, FF, 75, 15, E8, 41, 03, 00, 00, C7, 00, 16, 00, 00, 00, E8, 70, 0B, 00, 00, 83, C8, FF, EB, 6E, B8, FF, FF, FF, 7F, 89, 45, E4, 3B, F0, 77, 03, 89, 75, E4, 53, FF, 75, 1C, 8D, 45, E0, FF, 75, 18, C7, 45, EC, 42, 00, 00, 00...
 
[+]

Code size:
58.5 KB (59,904 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NspTray

Command:
"C:\Program Files\norman shark icsp\nsptray.exe"


Scan nsptray.exe - Powered by Reason Core Security