ActionVoip.exe

Finarea SA

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘ActionVoip’.
Publisher:
ActionVoip  (signed by Finarea SA)

Product:
ActionVoip

Description:
Client to make VoIP calls.

Version:
4.14.759.0

MD5:
a62085f646243f03a2bbaf6be6d2d4df

SHA-1:
7d5f856532afa9f09580bee7c7aa68eacdb5e8de

SHA-256:
a5451e07dfb346c9942b955bb576842a90b5e639cd66c4006c0b15241accbf40

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 12:43:50 AM UTC  (today)

File size:
21.9 MB (22,958,688 bytes)

Product version:
4.14 build 759

Copyright:
(c) ActionVoip, All rights reserved.

Original file name:
ActionVoip.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\actionvoip.com\actionvoip\actionvoip.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
9/26/2014 3:00:00 AM

Valid to:
9/26/2017 2:59:59 AM

Subject:
CN=Finarea SA, O=Finarea SA, L=Lugano, S=Tessin, C=CH, SERIALNUMBER=CHE-100.753.519, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.3=CH

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA - G2, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
33BF938E0EBC37D808238E017CAC915D

File PE Metadata
Compilation timestamp:
12/9/2014 11:27:30 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x41206D

Entry point:
E8, DC, 0F, 01, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 10, 8B, 4D, 08, 53, 8B, 5D, 0C, 56, 57, 8B, 7D, 10, 89, 4D, F8, 89, 5D, FC, 85, FF, 74, 1A, 83, 7D, 14, 00, 74, 14, 85, C9, 75, 17, E8, 0D, 06, 00, 00, C7, 00, 16, 00, 00, 00, E8, DE, 64, 00, 00, 33, C0, 5F, 5E, 5B, C9, C3, 8B, 75, 18, 85, F6, 74, 0C, 83, C8, FF, 33, D2, F7, F7, 39, 45, 14, 76, 21, 83, FB, FF, 74, 0C, 53, 6A, 00, 51, E8, 09, 98, FF, FF, 83, C4, 0C, 85, F6, 74, C1, 83, C8, FF, 33, D2, F7, F7, 39, 45, 14, 77, B5, 0F, AF, 7D...
 
[+]

Entropy:
6.7550

Code size:
10.8 MB (11,357,184 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ActionVoip

Command:
"C:\Program Files\actionvoip.com\actionvoip\actionvoip.exe" -nosplash -minimized


Scan ActionVoip.exe - Powered by Reason Core Security