nwlogplayer.exe

NetWitness Corporation

Publisher:
NetWitness Corporation  (signed and verified)

MD5:
ba677cff2bf3b82bd6919bab61b62189

SHA-1:
a8de9fdb4de03cef9fd62de0a8da903943a0700f

SHA-256:
9ce825f8c6633ac372db4110b3587a024d3b004aa03b4377f0a01f057d618f75

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 5:06:26 PM UTC  (today)

File size:
1.4 MB (1,426,296 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\netwitness\netwitness 9.8\nwlogplayer.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/21/2011 9:00:00 AM

Valid to:
11/3/2014 8:59:59 AM

Subject:
CN=NetWitness Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NetWitness Corporation, L=Reston, S=Virginia, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6E6BC78B052D6265B3098870D15227BB

File PE Metadata
Compilation timestamp:
12/18/2012 11:31:00 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
24576:xGc2kFWJSDD3Km/PlhqXxrQ2+Hse/b7Z2K/C4Pp3eaTlK7J:GkFWuDn/7CvHe/b7ZUaTlCJ

Entry address:
0xB7946

Entry point:
E8, C8, 05, 00, 00, E9, B3, FD, FF, FF, 8B, FF, 55, 8B, EC, FF, 75, 14, FF, 75, 10, FF, 75, 0C, FF, 75, 08, 68, 9E, 72, 4B, 00, 68, A8, 0B, 54, 00, E8, 3E, 06, 00, 00, 83, C4, 18, 5D, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 80, F9, 40, 73, 15, 80, F9, 20, 73, 06, 0F, A5, C2, D3, E0, C3, 8B, D0, 33, C0, 80, E1, 1F, D3, E2, C3, 33, C0, 33, D2, C3, CC, 80, F9, 40, 73, 15, 80, F9, 20, 73, 06, 0F, AD, D0, D3, EA, C3, 8B, C2, 33, D2, 80, E1, 1F, D3, E8, C3, 33, C0, 33, D2, C3, CC, 51, 8D, 4C, 24, 04, 2B...
 
[+]

Entropy:
6.0627

Code size:
810 KB (829,440 bytes)

Scan nwlogplayer.exe - Powered by Reason Core Security