danfemon.EXE

DANFE Mon

UNIMAKE SOLUCOES CORPORATIVAS LTDA - EPP

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘DANFEViewMon’.
Publisher:
Unimake Software  (signed by UNIMAKE SOLUCOES CORPORATIVAS LTDA - EPP)

Product:
DANFE Mon

Version:
1.5.8.1498

MD5:
87621c77d264200b7a965524fcf2dcc4

SHA-1:
9bd37ac8ecd719059a0e4ae986659093e82a2d62

SHA-256:
5e197fb9d54c2ca6d5092e5c6ac71b4d82d940ff575763a3ea61a1ed3e6a4d0d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 10:54:52 AM UTC  (today)

File size:
6.8 MB (7,089,400 bytes)

Product version:
1.5.8.1498

Copyright:
Copyright © Unimake Softwares

Trademarks:
Todos os direitos reservados

Original file name:
danfemon.EXE

File type:
Executable application (Win32 EXE)

Language:
Brazilian Portuguese

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
1/31/2017 5:57:12 PM

Valid to:
2/1/2020 5:57:12 PM

Subject:
CN=UNIMAKE SOLUCOES CORPORATIVAS LTDA - EPP, OU=TI, O=UNIMAKE SOLUCOES CORPORATIVAS LTDA - EPP, L=PARANAVAI, S=PARANA, C=BR

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G3, O=GlobalSign nv-sa, C=BE

Serial number:
58FFB6216597D3ED9F3F4BAF

File PE Metadata
Compilation timestamp:
3/7/2017 2:39:06 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.50

Entry address:
0xD2BF4

Entry point:
DB, E3, 31, C0, BB, DC, 83, 5F, 00, 89, C1, E8, DC, A9, 09, 00, 09, C0, 74, 0A, B8, 68, B1, 4A, 00, E8, 66, 0F, 09, 00, E8, 15, 28, F6, FF, 90, 60, 89, C6, 89, DA, 8A, 06, 8A, 5E, 01, 8A, 4E, 02, E8, 86, 00, 00, 00, 88, 06, 88, 46, 01, 88, 46, 02, 61, C3, 51, 52, 83, F9, 64, 7E, 07, B9, 64, 00, 00, 00, EB, 0A, 83, F9, 00, 7D, 05, B9, 00, 00, 00, 00, BA, 64, 00, 00, 00, E8, 06, 00, 00, 00, 5A, 59, C3, 90, 90, 90, 83, EC, 04, 60, 89, C6, 89, CF, 89, 54, 24, 20, 52, 57, 0F, B6, 4E, 02, 0F, B6, 43, 02, 29, C1...
 
[+]

Code size:
1.8 MB (1,859,072 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
DANFEViewMon

Command:
C:\danfeview\danfemon.exe


Scan danfemon.EXE - Powered by Reason Core Security