fx_client.exe

ActForex, Inc

Publisher:
ACT Forex  (signed by ActForex, Inc)

Description:
Forex trading application

Version:
4.7.223.0

MD5:
089b3d7243614cf359cca0f6766b1f46

SHA-1:
46e1164ea4154fde69bb6756820dede1b0fa3a79

SHA-256:
00ab5c26dc51f41a9d09e18703e18a125803d37c0a7a7bbca55cf98534d5a7d7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 12:12:33 AM UTC  (today)

File size:
16.2 MB (16,995,456 bytes)

Product version:
4.7

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\gci\app#193c31ed\fx_client.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/31/2012 5:30:00 AM

Valid to:
6/1/2014 5:29:59 AM

Subject:
CN="ActForex, Inc", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="ActForex, Inc", L=New York City, S=New York, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
164759EC702A22A8433DF0C704E00D0D

File PE Metadata
Compilation timestamp:
12/6/2013 3:53:23 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:0z3Ig2ECTg5co8ddTovjOpbxP0r0oOoeuWUJzy+yCNWT7BE2w:q3Ig2Ey6co8ddTov+y9FeuWUNOq2w

Entry address:
0xBD8754

Entry point:
55, 8B, EC, 83, C4, E8, 53, 56, 57, 33, C0, 89, 45, E8, 89, 45, EC, B8, D0, 35, FB, 00, E8, 99, 40, 43, FF, 33, C0, 55, 68, 8F, 8D, FD, 00, 64, FF, 30, 64, 89, 20, 33, C0, 55, 68, F8, 8C, FD, 00, 64, FF, 30, 64, 89, 20, A1, DC, 80, FF, 00, 8B, 00, BA, AC, 8D, FD, 00, E8, 14, 03, 5F, FF, A1, DC, 80, FF, 00, 8B, 00, B2, 01, E8, C2, 25, 5F, FF, E8, 0D, A1, FD, FF, A1, DC, 80, FF, 00, 8B, 00, E8, BD, 08, 5F, FF, 8B, 0D, 94, 7B, FF, 00, A1, DC, 80, FF, 00, 8B, 00, 8B, 15, 6C, 53, F5, 00, E8, BD, 08, 5F, FF, 8B...
 
[+]

Entropy:
6.3606

Developed / compiled with:
Microsoft Visual C++

Code size:
11.8 MB (12,417,536 bytes)

Scan fx_client.exe - Powered by Reason Core Security