winfamily.exe

WinFamily

Norplex AS

Publisher:
Evoo Systems   (signed by Norplex AS)

Product:
WinFamily

Description:
WinFamily

Version:
10.0.2.0

MD5:
0b5ad14e93ace38ca861524ca2259bb4

SHA-1:
8caa4ec42f0c6933713d5d28842507f945f5c0cc

SHA-256:
b167a3f2f2095bbd37ad1936560963195541a1311d08f33ca9eee644b4e12800

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 12:29:07 AM UTC  (today)

File size:
3.8 MB (3,977,208 bytes)

Product version:
10.0.2.

Copyright:
WinFamily

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\winfamily.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
8/29/2012 2:00:00 AM

Valid to:
9/3/2015 2:00:00 PM

Subject:
CN=Norplex AS, O=Norplex AS, L=Heggenes, C=NO

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
01D67F55C8102C8F18711A62C2A423D1

File PE Metadata
Compilation timestamp:
1/3/2013 12:10:31 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:vc7imVt8r2+UYYVmhNuzwH2TP4PqgNFLL0Z069e75sNTUjJq:vsimVt8ZHlLLY0gIq

Entry address:
0x223AA4

Entry point:
55, 8B, EC, B9, 2A, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, 57, B8, F8, F4, 61, 00, E8, 84, 4A, DE, FF, 33, C0, 55, 68, E3, 56, 62, 00, 64, FF, 30, 64, 89, 20, 33, C0, 55, 68, D3, 3B, 62, 00, 64, FF, 30, 64, 89, 20, C7, 05, 3C, B8, 63, 00, 94, 00, 00, 00, 68, 3C, B8, 63, 00, E8, 24, 54, DE, FF, E8, 2F, 27, FE, FF, 84, C0, 74, 6B, B2, 01, A1, 78, 16, 43, 00, E8, DF, DC, E0, FF, 8B, D8, BA, 00, 00, 00, 80, 8B, C3, E8, AD, DD, E0, FF, 8D, 55, E4, 33, C0, E8, 27, FA, DD, FF, 8B, 45, E4, 8D, 55, E8, E8...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.1 MB (2,247,680 bytes)

Scan winfamily.exe - Powered by Reason Core Security