npw.exe

ZAO

Publisher:
ZAO   (signed and verified)

Version:
2012.7.10

MD5:
22027b552038e9ffad2b42d5a3d44e39

SHA-1:
859252dd0a197a2b6b88942342fa448d6713d1f9

SHA-256:
c09e45fc7cfd95d82144c0c234c10a8199cf2252f67c90f5f36f66bd79710a20

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/27/2024 3:35:01 PM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:Malware.XPACK-HIE/Heur!1.9C48
23.00.65.141223

File size:
4.4 MB (4,659,968 bytes)

Product version:
2012.7.10

Original file name:
npw.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
10/21/2011 4:00:00 AM

Valid to:
10/21/2012 3:59:59 AM

Subject:
CN="ZAO ""Sluzhba Nalogoplatelschika""", O="ZAO ""Sluzhba Nalogoplatelschika""", STREET="Bol'shaya Pionerskaya, 7", L=Moscow, S=Moscow, PostalCode=115054, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
78EB456CBA5213730565E315443707A6

File PE Metadata
Compilation timestamp:
11/5/2005 5:39:38 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
98304:20XpGW5iSrbIL8LBUJeaiQNdBghVK2W5ZmYrR/MCgD:2GFpoALiJQlVKd5ZmYrR/W

Entry address:
0x4015

Entry point:
E8, CF, 00, 00, 00, C3, 68, EB, 01, E9, 8B, 85, DC, 00, 00, 00, 50, 8B, 85, E4, 00, 00, 00, 8B, 30, FF, D6, 89, 85, D8, 00, 00, 00, EB, 01, E9, EB, 01, E9, 8D, 85, F0, 00, 00, 00, 50, EB, 01, E9, 8B, 85, D8, 00, 00, 00, 50, EB, 01, E9, 8B, 85, E0, 00, 00, 00, 8B, 30, EB, 01, E9, FF, D6, 89, 85, D4, 00, 00, 00, EB, 01, E9, 8D, 85, D0, 00, 00, 00, 50, 6A, 04, 68, 00, 10, 00, 00, 68, 00, 00, 40, 00, 8B, B5, D4, 00, 00, 00, FF, D6, EB, 01, E9, B9, 00, 00, 40, 00, 8B, 41, 3C, 03, C8, 83, C1, 18, 8B, 41, 38, 89...
 
[+]

Code size:
59 KB (60,416 bytes)

Scan npw.exe - Powered by Reason Core Security