cfosspeed.exe

cFosSpeed Window

cFos Software GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘cFosSpeed’.
Publisher:
cFos Software GmbH  (signed and verified)

Product:
cFosSpeed Window

Version:
10.21.2288

MD5:
4323f48511f24a14c1797ab11b4cd705

SHA-1:
718b58b5f78953a21a84f51dda19e0d3a0d9712d

SHA-256:
359f516b165294bf07938ed2f55cbe00adc9d731f2158dcc7792a0e79b31a157

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 4:43:54 AM UTC  (today)

File size:
1.5 MB (1,563,480 bytes)

Product version:
10.21.2288

Copyright:
Copyright © Lueders/Winkler 2003-2017

Original file name:
cfosspeed.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\cfosspeed\cfosspeed.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/23/2016 12:15:25 AM

Valid to:
8/24/2019 12:15:25 AM

Subject:
CN=cFos Software GmbH, O=cFos Software GmbH, STREET=Nordstrasse 65a, L=Bonn, S=Nordrhein-Westfalen, C=DE, OID.1.3.6.1.4.1.311.60.2.1.1=Bonn, OID.1.3.6.1.4.1.311.60.2.1.2=Nordrhein-Westfalen, OID.1.3.6.1.4.1.311.60.2.1.3=DE, SERIALNUMBER=HRB 9150, OID.2.5.4.15=Private Organization

Issuer:
CN=GlobalSign Extended Validation CodeSigning CA - SHA256 - G3, O=GlobalSign nv-sa, C=BE

Serial number:
2496B989FE20F7B20DF01433

File PE Metadata
Compilation timestamp:
1/13/2017 11:13:50 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0xBEDAC

Entry point:
48, 83, EC, 28, E8, 07, 03, 00, 00, 48, 83, C4, 28, E9, 82, FE, FF, FF, CC, CC, 48, 83, EC, 28, 4D, 8B, 41, 38, 48, 8B, CA, 49, 8B, D1, E8, 0D, 00, 00, 00, B8, 01, 00, 00, 00, 48, 83, C4, 28, C3, CC, CC, CC, 40, 53, 45, 8B, 18, 48, 8B, DA, 41, 83, E3, F8, 4C, 8B, C9, 41, F6, 00, 04, 4C, 8B, D1, 74, 13, 41, 8B, 40, 08, 4D, 63, 50, 04, F7, D8, 4C, 03, D1, 48, 63, C8, 4C, 23, D1, 49, 63, C3, 4A, 8B, 14, 10, 48, 8B, 43, 10, 8B, 48, 08, 48, 03, 4B, 08, F6, 41, 03, 0F, 74, 0A, 0F, B6, 41, 03, 83, E0, F0, 4C, 03...
 
[+]

Entropy:
6.4151

Code size:
885.5 KB (906,752 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
cFosSpeed

Command:
C:\Program Files\cfosspeed\cfosspeed.exe


Scan cfosspeed.exe - Powered by Reason Core Security