f_000006

Net Protector Antivirus

Biz Secure Labs Pvt. Ltd.

Publisher:
Biz Secure Labs Pvt.Ltd.  (signed by Biz Secure Labs Pvt. Ltd.)

Product:
Net Protector Antivirus

Description:
Downloads Net protector important files

Version:
2014, 8, 12, 0

MD5:
a9793cc8f878c1e57391821e55cbb1e4

SHA-1:
3a11f696de138d5cae4479f2c6303a8cd33e3f17

SHA-256:
2f5c7629af3ccce6a14a4ee0fffcc79d4a7be8d3afb42a3d16c33650576f8708

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/15/2025 5:10:22 AM UTC  (today)

File size:
188.7 KB (193,216 bytes)

Product version:
2014, 8, 0, 0

Copyright:
Copyright (C) 2014

Original file name:
Npdownload.EXE

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\speed browser\user data\default\cache\f_000006

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/3/2013 11:19:26 PM

Valid to:
3/1/2017 6:03:38 PM

Subject:
E=support@indiaantivirus.com, CN=Biz Secure Labs Pvt. Ltd., O=Biz Secure Labs Pvt. Ltd., L=Pune, S=Maharashfra, C=IN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121671B9C9C88B96999D212247766A5D404

File PE Metadata
Compilation timestamp:
8/12/2014 2:52:08 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:WPJbIDPRNd9zcXN/pjnI6NsJPR2jKyL8Uzb/JfuMxDPN+WjjjjjjjjjjjljjLjjp:6JbIDPRNd9AB8PR2jKyLHzbJmiDPVQfE

Entry address:
0xB05E

Entry point:
55, 8B, EC, 6A, FF, 68, 38, CE, 40, 00, 68, E4, B1, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, D8, C2, 40, 00, 59, 83, 0D, 0C, 06, 41, 00, FF, 83, 0D, 10, 06, 41, 00, FF, FF, 15, D4, C2, 40, 00, 8B, 0D, 00, 06, 41, 00, 89, 08, FF, 15, D0, C2, 40, 00, 8B, 0D, FC, 05, 41, 00, 89, 08, A1, CC, C2, 40, 00, 8B, 00, A3, 08, 06, 41, 00, E8, 16, 01, 00, 00, 39, 1D, B0, 03, 41, 00, 75, 0C, 68, E0, B1, 40, 00, FF, 15, C8, C2...
 
[+]

Entropy:
6.9770

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
44 KB (45,056 bytes)

The file f_000006 has been seen being distributed by the following URL.

Scan f_000006 - Powered by Reason Core Security