webconf_client.exe

FastViewer

FastViewer GmbH und Co KG

This is a setup program which is used to install the application. The file has been seen being downloaded from www.muellergroup.com.
Publisher:
Fastviewer.com  (signed by FastViewer GmbH und Co KG)

Product:
FastViewer

Version:
3.10.0015

MD5:
073efa70307b3bbb56fd0ffc796a20f6

SHA-1:
52225379e5e736610bb03749cbf2ddb37c8ff76d

SHA-256:
df10cc00df15b22a2abd28dae57a073b674ad98c56438f2671f4348298a17a72

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 4:27:53 PM UTC  (today)

File size:
1.5 MB (1,598,592 bytes)

Product version:
3.10.0015

Copyright:
(c) FastViewer GmbH. All rights reserved.

Original file name:
FastViewer.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States d'America)

Common path:
C:\users\{user}\downloads\webconf_client.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
9/2/2009 2:00:00 AM

Valid to:
11/12/2011 12:59:59 AM

Subject:
CN=FastViewer GmbH und Co KG, OU=SECURE APPLICATION DEVELOPMENT, O=FastViewer GmbH und Co KG, L=Neumarkt in der OPf, S=Bayern, C=DE

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
5ABA24A7860039CD7C898AA4E1C9CDAE

File PE Metadata
Compilation timestamp:
6/10/2010 1:22:23 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:fmCEefZDDN6uMxHHHRpMbMOodz3GUjLraHEpezrRx05jSyj7R7/vy3q7cS/:pEeflNMxHHHRJp3PjSHzg5jrj7R7IqV

Entry address:
0x1000

Entry point:
B8, 30, 16, A1, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, FA, 01, 43, 48, 5D, 46, B6, 5C, 61, 0E, DE, F0, 8A, DF, 55, 29, FC, D9, 8D, EB, F0, 77, AA, EC, B5, 73, 99, D1, CA, 9C, E0, 0F, 91, 05, 0B, 1E, 8F, C5, B4, 89, 00, BD, 22, 08, 86, B6, 2E, 03, AC, A2, 43, 7A, 9F, DB, 7D, 5B, 88, 99, A4, 16, CF, 6D, 48, A9, BC, 29, 94, 41, B8, 1C, 66, 52, 89, FB, B7, 55, FC, 2D, 75, DD, 27, EE, 8B, B3, 62, 52, 33, 8D, D8, 0B, 16, 82, F2...
 
[+]

Packer / compiler:
PECompact v2

Code size:
3.3 MB (3,461,120 bytes)

The file webconf_client.exe has been seen being distributed by the following URL.

http://www.muellergroup.com/fileadmin/website/.../webconf_client.exe

Scan webconf_client.exe - Powered by Reason Core Security