networx.exe

NetWorx

SOFTPERFECT PTY. LTD.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NetWorx’.
Publisher:
SoftPerfect Research  (signed by SOFTPERFECT PTY. LTD.)

Product:
NetWorx

Description:
NetWorx Application (32-bit)

Version:
5.2.11.13324

MD5:
df5bfd90f6a743775cf7d6f56290a082

SHA-1:
e5eb51ed21946b85fe80a48ce0c69c1e4307bbf5

SHA-256:
c9da31555dc322d8a89ef059c28e048511b2340c76f9e7389a820e53562d586f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 10:00:22 AM UTC  (today)

File size:
3.3 MB (3,430,608 bytes)

Product version:
5.2.11.13324

Copyright:
2002-2013 SoftPerfect Research

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\networx\networx.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/17/2012 3:59:41 PM

Valid to:
12/17/2015 2:59:41 PM

Subject:
CN=SOFTPERFECT PTY. LTD., O=SOFTPERFECT PTY. LTD., L=KENSINGTON PARK, S=SOUTH AUSTRALIA, C=AU

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121D3E3CF8CC5546295D1696F43CEF8BA42

File PE Metadata
Compilation timestamp:
11/20/2013 1:58:32 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:AgZwBZVISCog0w3pbIuadhpe9rQGJjMqsvnf:pZwBEzIhyK

Entry address:
0x2243CC

Entry point:
55, 8B, EC, B9, 04, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 56, B8, 90, A5, 61, 00, E8, E9, 69, DE, FF, 33, C0, 55, 68, EB, 46, 62, 00, 64, FF, 30, 64, 89, 20, B8, 04, 47, 62, 00, E8, B1, 07, E0, FF, 84, C0, 74, 11, A1, 28, D4, 62, 00, 8B, 00, E8, 4D, 5D, F5, FF, E9, BC, 02, 00, 00, B8, 20, 47, 62, 00, E8, 92, 07, E0, FF, 84, C0, 74, 11, A1, 28, D4, 62, 00, 8B, 00, E8, DE, 65, F5, FF, E9, 9D, 02, 00, 00, B8, 40, 47, 62, 00, E8, 73, 07, E0, FF, 84, C0, 75, 0E, B8, 60, 47, 62, 00, E8, 65, 07, E0, FF, 84...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.1 MB (2,243,072 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NetWorx

Command:
"C:\Program Files\networx\networx.exe" \auto


Scan networx.exe - Powered by Reason Core Security