networx.exe

NetWorx

SOFTPERFECT PTY. LTD.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NetWorx’.
Publisher:
SoftPerfect Research  (signed by SOFTPERFECT PTY. LTD.)

Product:
NetWorx

Description:
NetWorx Application (32-bit)

Version:
5.3.1.14134

MD5:
550e75788944e8d1345bf28a1524f4df

SHA-1:
b1e9994163407fa2f5ee57d5bdeff4a1f7fcac2a

SHA-256:
76ed37a6247475ec35b713fd1241a3aa1f15934b336af02067c5fe9a96cb1aa6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 10:29:04 AM UTC  (today)

File size:
4.2 MB (4,401,872 bytes)

Product version:
5.3.1.14134

Copyright:
2002-2014 SoftPerfect Research

File type:
Executable application (Win32 EXE)

Language:
English (Australia)

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/17/2012 2:59:41 PM

Valid to:
12/17/2015 1:59:41 PM

Subject:
CN=SOFTPERFECT PTY. LTD., O=SOFTPERFECT PTY. LTD., L=KENSINGTON PARK, S=SOUTH AUSTRALIA, C=AU

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121D3E3CF8CC5546295D1696F43CEF8BA42

File PE Metadata
Compilation timestamp:
5/14/2014 4:08:50 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:Z0e3eumzGx1pkDUSISwYeasFWXu6VVdfz3uJp8msvni:We3XmzGx9oMWXu6x8

Entry address:
0x2FC7A0

Entry point:
55, 8B, EC, 83, C4, E0, 53, 56, 57, 33, C0, 89, 45, E0, 89, 45, EC, 89, 45, E8, B8, C8, 12, 6F, 00, E8, 9A, EF, D0, FF, 33, C0, 55, 68, 30, CB, 6F, 00, 64, FF, 30, 64, 89, 20, B8, 4C, CB, 6F, 00, E8, FE, 90, D2, FF, 84, C0, 74, 11, A1, EC, 59, 70, 00, 8B, 00, E8, 32, 5D, F2, FF, E9, 22, 03, 00, 00, B8, 68, CB, 6F, 00, E8, DF, 90, D2, FF, 84, C0, 74, 11, A1, EC, 59, 70, 00, 8B, 00, E8, 9F, 68, F2, FF, E9, 03, 03, 00, 00, B8, 88, CB, 6F, 00, E8, C0, 90, D2, FF, 84, C0, 75, 0E, B8, A8, CB, 6F, 00, E8, B2, 90...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
3 MB (3,127,808 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NetWorx

Command:
"C:\minitools\online\networx\networx.exe" \auto


Scan networx.exe - Powered by Reason Core Security