netsession_win.exe

GeoTrust Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Akamai NetSession Interface’.
Publisher:
GeoTrust Inc.  (signed and verified)

MD5:
aaf269786f98264e06372ab5b28f6ccf

SHA-1:
76df182c1ddff4ee99706821447d39c614e7c1d6

SHA-256:
3fae35f47f3f2fd28b87f30372e0573752426dfc5d43fa92ee83786ec77347b4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 1:22:13 AM UTC  (today)

File size:
4.7 MB (4,885,432 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\akamai\netsession_win.exe

Digital Signature
Signed by:

Authority:
GeoTrust Inc.

Valid from:
5/21/2002 6:00:00 AM

Valid to:
5/21/2022 6:00:00 AM

Subject:
CN=GeoTrust Global CA, O=GeoTrust Inc., C=US

Issuer:
CN=GeoTrust Global CA, O=GeoTrust Inc., C=US

Serial number:
023456

File PE Metadata
Compilation timestamp:
9/10/2015 9:58:17 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x187C1A

Entry point:
8B, 45, D4, 73, 03, 8D, 45, D4, 8B, 4D, 9C, 80, 3C, 08, 7F, 74, 58, 83, 7D, E8, 10, 8B, 45, D4, 73, 03, 8D, 45, D4, 8B, 4D, 9C, FE, 04, 08, EB, 44, 83, 7D, E8, 10, 8B, 45, D4, 73, 03, 8D, 45, D4, 8B, 4D, 9C, 38, 1C, 08, 74, 49, 66, 39, 9D, 7C, FF, FF, FF, 74, 40, 38, 5E, 04, 75, 07, 8B, CE, E8, 26, CB, FF, FF, 0F, B7, 46, 06, 66, 3B, 85, 7C, FF, FF, FF, 75, 27, 53, 6A, 01, 8D, 4D, D4, E8, 6B, 28, EA, FF, FF, 45, 9C, 8B, CE, E8, DB, CA, FF, FF, FF, 75, A4, 8B, CE, E8, 2A, CB, FF, FF, 84, C0, 0F, 84, 14, FF...
 
[+]

Entropy:
6.8767

Code size:
2.9 MB (3,040,768 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Akamai NetSession Interface

Command:
"C:\users\{user}\appdata\local\akamai\netsession_win.exe"


Scan netsession_win.exe - Powered by Reason Core Security