Observer.exe

Observer - Protocol Analyzer

Network Instruments, LLC

Publisher:
Network Instruments, LLC  (signed and verified)

Product:
Observer - Protocol Analyzer

Version:
16,1,19,0

MD5:
7b4023cfb34cc86811f4ae3a3b092a93

SHA-1:
0399aa910072650fe986515cf9bf63cb93654565

SHA-256:
0aaacfbc83edffdc73a1893cd6f4a27d2a82cd61b4310008a87aece6166a39c8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 3:24:37 AM UTC  (today)

File size:
5.7 MB (6,017,280 bytes)

Product version:
16,1,19,0

Copyright:
Copyright © 1994-2013 Network Instruments, LLC. All rights reserved.

Original file name:
Observer.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\win32\observer.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/13/2011 2:00:00 AM

Valid to:
10/30/2014 12:59:59 AM

Subject:
CN="Network Instruments, LLC", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Network Instruments, LLC", S=Minnesota, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1F687F97C7FDCBFF63F002FA4090B2BF

File PE Metadata
Compilation timestamp:
5/22/2014 11:18:23 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x1243AA

Entry point:
E8, 04, 05, 00, 00, E9, 63, FD, FF, FF, FF, 25, B8, 9B, 53, 00, FF, 25, B4, 9B, 53, 00, FF, 25, B0, 9B, 53, 00, FF, 25, AC, 9B, 53, 00, FF, 25, A8, 9B, 53, 00, FF, 25, A4, 9B, 53, 00, FF, 25, A0, 9B, 53, 00, FF, 25, 9C, 9B, 53, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 80, F9, 40, 73, 15, 80, F9, 20, 73, 06, 0F, AD, D0, D3, EA, C3, 8B, C2, 33, D2, 80, E1, 1F, D3, E8, C3, 33, C0, 33, D2, C3, CC, FF, 25, 98, 9B, 53, 00, FF, 25, 94, 9B, 53, 00, FF, 25, 90, 9B, 53, 00, FF, 25, 8C, 9B, 53, 00, FF, 25...
 
[+]

Code size:
1.2 MB (1,275,904 bytes)

Scan Observer.exe - Powered by Reason Core Security