NwmItfPS.dll

NightWatchman

1E

Publisher:
1E  (signed and verified)

Product:
NightWatchman

Description:
NightWatchman5.0 Proxy/Stub DLL

Version:
5.6.10.11 r53073

MD5:
81425381b4ec2541c583e30e3ef8afd3

SHA-1:
139be06730403c8ae85a07e7fbd6b9cb40341507

SHA-256:
5674be747d30c8e0b8860ca0340e0bf968d6b22e41dfda6e94422dd387037d04

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 10:12:11 PM UTC  (today)

File size:
17.3 KB (17,752 bytes)

Product version:
5.6.10.11 r53073

Copyright:
Copyright © 1E 2000-2009. All rights reserved.

Trademarks:
1E (R) and NightWatchman (R) are registered trademarks of 1E Ltd.

Original file name:
NwmItfPS.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United Kingdom)

Common path:
C:\Program Files\1e\nightwatchman50\nwmitfps.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
6/1/2009 8:00:00 AM

Valid to:
6/13/2010 7:59:59 AM

Subject:
CN=1E, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=1E, L=Ealing, S=London, C=GB

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5867F19D569205393394B76658AEF783

Registration
CLSIDs:
{761A61EA-68C4-4B61-9B3A-68FCD7547B71}, {CCEA4CAB-38DE-458F-ADCB-A3A8B2E7C66F}

COM registered:
Yes

File PE Metadata
Compilation timestamp:
7/9/2009 1:23:25 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
192:mrpXT4Z8FNEBWn0JSTtbGSu3XKrqDAvrg6Q6JNUeYkyowJL/MkN+ebCfdLQpkqsN:mrRT4Z4mUEkJy6bFtykYJLPDbClv1aO

Entry address:
0x1539

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 0D, 03, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, CC, FE, FF, FF, 59, 5D, C2, 0C, 00, 68, F4, 40, 00, 10, E8, 86, 03, 00, 00, 59, C3, 6A, 14, 68, 20, 38, 00, 10, E8, 64, 02, 00, 00, FF, 35, 34, 44, 00, 10, 8B, 35, 78, 30, 00, 10, FF, D6, 59, 89, 45, E4, 83, F8, FF, 75, 0C, FF, 75, 08, FF, 15, 48, 30, 00, 10, 59, EB, 67, 6A, 08, E8, 60, 03, 00, 00, 59, 83, 65, FC, 00, FF, 35, 34, 44, 00, 10, FF, D6, 89, 45, E4, FF, 35, 30, 44, 00, 10, FF, D6, 59, 59, 89...
 
[+]

Entropy:
5.9176

Code size:
3.5 KB (3,584 bytes)

Scan NwmItfPS.dll - Powered by Reason Core Security