WFilter.exe

IMFirewall Software WFilter

NanJing BengLv Information Technology Ltd.

Publisher:
IMFirewall Software  (signed by NanJing BengLv Information Technology Ltd.)

Product:
IMFirewall Software WFilter

Description:
WFilter.exe

Version:
3, 3, 0, 1

MD5:
63eaa8750c4b02653ef9b21c44e9ba6b

SHA-1:
21569fec19b486e2dd65582cfdfd07def35b7439

SHA-256:
ecc7bb541b1e8a2808e654c53112c0efcd43ce4832cde9a1d283adbc9b22f95e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/14/2025 3:13:24 AM UTC  (today)

File size:
39.8 KB (40,752 bytes)

Product version:
3, 3, 0, 1

Copyright:
Copyright ? 2010

Trademarks:
IMFirewall

Original file name:
WFilter.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\Program Files\imfirewall\wfilter\wfilter.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/13/2011 5:45:00 AM

Valid to:
3/26/2012 5:44:59 AM

Subject:
CN=NanJing BengLv Information Technology Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NanJing BengLv Information Technology Ltd., L=NanJing, S=JiangSu, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
53908B37B3C2A7ED3AC05A52D987CDD5

File PE Metadata
Compilation timestamp:
12/28/2010 8:30:01 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.56

CTPH (ssdeep):
384:+1Jp6mbSHnGykLsnT5LrS2aWWIYJp16WB+n1eYJLcfhaeM3:m5xyoKT5C2BWHM1nLqE

Entry address:
0x12A0

Entry point:
55, 89, E5, 83, EC, 08, C7, 04, 24, 02, 00, 00, 00, FF, 15, 84, 51, 40, 00, E8, 98, FE, FF, FF, 90, 8D, B4, 26, 00, 00, 00, 00, 55, 8B, 0D, A0, 51, 40, 00, 89, E5, 5D, FF, E1, 8D, 74, 26, 00, 55, 8B, 0D, 94, 51, 40, 00, 89, E5, 5D, FF, E1, 90, 90, 90, 90, 55, 89, E5, 5D, E9, 47, 06, 00, 00, 90, 90, 90, 90, 90, 90, 90, 55, 31, D2, 89, E5, B9, 3F, 00, 0F, 00, 83, EC, 48, 89, 4C, 24, 08, 89, 7D, FC, 89, 5D, F4, 89, 75, F8, 89, 54, 24, 04, C7, 04, 24, 00, 00, 00, 00, E8, 9E, 09, 00, 00, 83, EC, 0C, 85, C0, 89...
 
[+]

Entropy:
5.5297

Packer / compiler:
MingWin32 GCC, 0x3.x

Code size:
3.5 KB (3,584 bytes)

Scan WFilter.exe - Powered by Reason Core Security