vfon.EXE

Softfoundry VMEET

SOFTFOUNDRY International Pte Ltd

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Softfoundry VMEET’.
Publisher:
Softfoundry International Pte Ltd.  (signed by SOFTFOUNDRY International Pte Ltd)

Product:
Softfoundry VMEET

Version:
1, 0, 0, 31

MD5:
bb2889aa28590ac02d768fa0bae7c402

SHA-1:
30c3cadcea9018cf732cd9740513c75bb7b98315

SHA-256:
2f69ca7fdc44c5d8c0ad166dad4a3e92541b2658b0afa1c34b6cbbe0e501832f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/3/2024 2:13:38 PM UTC  (today)

File size:
15.6 MB (16,391,272 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright (C) 2003-2008 Softfoundry International Pte Ltd.

Original file name:
vfon.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\softfoundry vmeet\vfon.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/21/2008 7:00:00 AM

Valid to:
12/9/2009 6:59:59 AM

Subject:
CN=SOFTFOUNDRY International Pte Ltd, OU=Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SOFTFOUNDRY International Pte Ltd, L=Singapore, S=Singapore, C=SG

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
78AF4D287268BCC0A1413D19DFE3B9B9

File PE Metadata
Compilation timestamp:
4/30/2009 4:50:41 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
196608:GRUCuJQ0fS6pfuiHiqYEHiy3U4IMyq82cSxp7i0F:O0fS6pftv82Z7i0F

Entry address:
0x7C0A10

Entry point:
6A, 74, 68, 70, 5C, FA, 00, E8, 38, 06, 00, 00, 33, DB, 89, 5D, E0, 53, 8B, 3D, 5C, 13, EB, 00, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03, C8, 81, 39, 50, 45, 00, 00, 75, 12, 0F, B7, 41, 18, 3D, 0B, 01, 00, 00, 74, 1F, 3D, 0B, 02, 00, 00, 74, 05, 89, 5D, E4, EB, 27, 83, B9, 84, 00, 00, 00, 0E, 76, F2, 33, C0, 39, 99, F8, 00, 00, 00, EB, 0E, 83, 79, 74, 0E, 76, E2, 33, C0, 39, 99, E8, 00, 00, 00, 0F, 95, C0, 89, 45, E4, 89, 5D, FC, 6A, 02, FF, 15, 38, 2F, EB, 00, 59, 83, 0D, C4, 2F, 12, 01, FF, 83...
 
[+]

Entropy:
6.5076

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
10.7 MB (11,206,656 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Softfoundry VMEET

Command:
"C:\Program Files\softfoundry vmeet\vfon.exe"


Scan vfon.EXE - Powered by Reason Core Security