fx_client.exe

ActForex, Inc

Publisher:
ACT Forex  (signed by ActForex, Inc)

Description:
Forex trading application

Version:
4.8.0.0

MD5:
f2845816d7fec338c888e11307e2ddb1

SHA-1:
3bbf2bfc9862fdde5afc58543af3554d7506a2ef

SHA-256:
2d76aea8269a1e61bf9637d5b348c152a9a2ac2633fd124656f2d833288bf1b7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/14/2024 11:50:57 PM UTC  (a few moments ago)

File size:
16.2 MB (16,981,120 bytes)

Product version:
4.8

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\gci\app#45b48840\fx_client.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/31/2012 5:30:00 AM

Valid to:
6/1/2014 5:29:59 AM

Subject:
CN="ActForex, Inc", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="ActForex, Inc", L=New York City, S=New York, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
164759EC702A22A8433DF0C704E00D0D

File PE Metadata
Compilation timestamp:
11/8/2013 5:53:44 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:CnI30w6jgJ8TfKmZDKv8Sx33/wMfoWbe+6cRNiaJD3RB82y:oI30w6q8TfKmZ+v8Mpbe+nNnzQ2y

Entry address:
0xBD5744

Entry point:
55, 8B, EC, 83, C4, E8, 53, 56, 57, 33, C0, 89, 45, E8, 89, 45, EC, B8, 44, 0C, FB, 00, E8, A9, 70, 43, FF, 33, C0, 55, 68, 7F, 5D, FD, 00, 64, FF, 30, 64, 89, 20, 33, C0, 55, 68, E8, 5C, FD, 00, 64, FF, 30, 64, 89, 20, A1, DC, 50, FF, 00, 8B, 00, BA, 9C, 5D, FD, 00, E8, 24, 33, 5F, FF, A1, DC, 50, FF, 00, 8B, 00, B2, 01, E8, D2, 55, 5F, FF, E8, 91, A7, FD, FF, A1, DC, 50, FF, 00, 8B, 00, E8, CD, 38, 5F, FF, 8B, 0D, 94, 4B, FF, 00, A1, DC, 50, FF, 00, 8B, 00, 8B, 15, 7C, 30, F5, 00, E8, CD, 38, 5F, FF, 8B...
 
[+]

Entropy:
6.3590

Developed / compiled with:
Microsoft Visual C++

Code size:
11.8 MB (12,406,784 bytes)

Scan fx_client.exe - Powered by Reason Core Security