FortKnoxGUI.exe

NETGATE FortKnox Personal Firewall

NETGATE Technologies s.r.o.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘FortKnoxPersonalFirewall’.
Publisher:
NETGATE Technologies s.r.o.  (signed and verified)

Product:
NETGATE FortKnox Personal Firewall

Description:
FortKnox Personal Firewall

Version:
6, 0, 305, 0

MD5:
bfece4d02e21e246d51a4799d6ebda80

SHA-1:
e1c53adee3305ea7c3a6886364b8e252186ab3ad

SHA-256:
7279c0d8f9b60041c569b5b269aaacf595cf874149856ba7ca8697660db47625

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 9:37:48 AM UTC  (today)

File size:
2.5 MB (2,599,576 bytes)

Product version:
6, 0, 305, 0

Copyright:
Copyright © 2007-2010 NETGATE Technologies s.r.o.

Original file name:
FortKnoxGUI.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\fortknox personal firewall\fortknoxgui.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/11/2010 2:00:00 AM

Valid to:
4/21/2011 1:59:59 AM

Subject:
CN=NETGATE Technologies s.r.o., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NETGATE Technologies s.r.o., L=Prievidza, S=Slovakia, C=SK

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5EE5DB781772D3FD5EC631E549B3CACD

File PE Metadata
Compilation timestamp:
11/24/2010 12:16:09 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:ZZZA26sR5f8zfU1Ke9TqLDWhMxV1Tw0vvrXFatp+qASz2t9YHNrWG29k1i2ZRCsn:XhV7eyKeRqGMO0vvsp+qASz2t9YHNrWG

Entry address:
0x12B1B0

Entry point:
48, 8B, C4, 48, 81, EC, A8, 00, 00, 00, 48, 89, 58, 18, 48, 89, 78, 20, 48, 8D, 48, 88, FF, 15, F4, B3, 01, 00, 90, FF, 15, F5, B3, 01, 00, 48, 8B, C8, 33, D2, 41, B8, 94, 00, 00, 00, FF, 15, 24, B4, 01, 00, 48, 8B, D8, 48, 85, C0, 75, 0A, B8, FF, 00, 00, 00, E9, 62, 02, 00, 00, C7, 00, 94, 00, 00, 00, 48, 8B, C8, FF, 15, 2B, B2, 01, 00, 85, C0, 75, 1E, FF, 15, B9, B3, 01, 00, 48, 8B, C8, 4C, 8B, C3, 33, D2, FF, 15, E3, B3, 01, 00, B8, FF, 00, 00, 00, E9, 31, 02, 00, 00, 8B, 43, 10, 89, 05, 24, 18, 09, 00...
 
[+]

Code size:
1.3 MB (1,328,640 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
FortKnoxPersonalFirewall

Command:
"C:\Program Files\fortknox personal firewall\fortknoxgui.exe"


Scan FortKnoxGUI.exe - Powered by Reason Core Security