PhpED.exe

NuSphere PHPED IDE

Nusphere

Publisher:
NuSphere Corp.  (signed by Nusphere)

Product:
NuSphere PHPED IDE

Version:
5.2.0.5220

MD5:
d393603bea93adbd975d485cb21409fa

SHA-1:
d4f6265c197de549f8dfdae2e4934a337ca87d08

SHA-256:
d47922d1030b44db88e2fb5e47addccd5f8a23c14aa2e339f4671644a680654a

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/23/2024 10:27:57 AM UTC  (today)

Scan engine
Detection
Engine version

Prevx
Heuristic: Suspicious File Which Interferes With Vulnerable Files Like The HostsFile
3.0.5

File size:
8.2 MB (8,556,664 bytes)

Product version:
5.2

Copyright:
Copyright (C) NuSphere Corp

Trademarks:
PhpED (tm)

Original file name:
PhpED.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\nusphere\phped\phped.exe

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
11/4/2007 5:00:00 PM

Valid to:
11/4/2008 4:59:59 PM

Subject:
CN=Nusphere, OU=Secure Application Development, O=Nusphere, L=Reno, S=Nevada, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
3463AC120D8CE030D0CA8B5FE3AA1632

File PE Metadata
Compilation timestamp:
6/19/1992 4:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:ABvhm34Ivvu5atXq2I2DsNpUi6R3IXNbGXnB82lGPVBXb2MMMM72MMMMs2MMMMkP:Kyjnu5ylzsNpiaNwC2lfGe

Entry address:
0x572634

Entry point:
55, 8B, EC, B9, 04, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, 56, 57, B8, E4, 15, 97, 00, E8, EB, 5D, A9, FF, BF, 3C, 91, 9A, 00, 33, C0, 55, 68, 15, 2C, 97, 00, 64, FF, 30, 64, 89, 20, 68, 24, 2C, 97, 00, 6A, 00, 6A, 00, E8, 7E, 62, A9, FF, A3, 48, 91, 9A, 00, E8, 74, 64, A9, FF, 3D, B7, 00, 00, 00, 0F, 94, 05, 4C, 91, 9A, 00, E8, E3, 0E, A9, FF, A0, 30, 2C, 97, 00, E8, 05, 94, B6, FF, E8, C4, FD, FA, FF, 68, 00, 08, 00, 00, E8, 0A, 67, A9, FF, B2, 01, A1, 74, 12, 97, 00, E8, 86, EC, FF, FF, A1, 4C...
 
[+]

Entropy:
6.4902

Developed / compiled with:
Microsoft Visual C++

Code size:
5.4 MB (5,709,824 bytes)

Scan PhpED.exe - Powered by Reason Core Security