phion.exe

Barracuda Network Access Client

Barracuda Networks, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘phion’.
Publisher:
Barracuda Networks, Inc.  (signed and verified)

Product:
Barracuda Network Access Client

Description:
Barracuda Network Access Client Tray

Version:
3.5.0.62

MD5:
f63015f382399c2f962427434ea46ace

SHA-1:
e628fc78f9cd638287860f7e1b4ebfe3a0c90cee

SHA-256:
5bc5e439b5b7bb5cfb57d56176a16d6b1433ffa2fe65b5903194062f0efbf858

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 5:31:07 AM UTC  (today)

File size:
5.3 MB (5,577,896 bytes)

Product version:
3.5.0.62

Copyright:
Copyright (C) Barracuda Networks, Inc.

Original file name:
phion.exe

File type:
Executable application (Win64 EXE)

Language:
Niemiecki (Austria)

Common path:
C:\Program Files\barracudang\phion.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/13/2013 2:00:00 AM

Valid to:
11/12/2016 12:59:59 AM

Subject:
CN="Barracuda Networks, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Barracuda Networks, Inc.", L=Campbell, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
057DC4E581A9391B81A832394DD1B46A

File PE Metadata
Compilation timestamp:
6/13/2014 10:08:11 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x1B6298

Entry point:
48, 83, EC, 28, E8, BB, 06, 00, 00, 48, 83, C4, 28, E9, 96, FC, FF, FF, CC, CC, 40, 53, 48, 83, EC, 20, 45, 8B, 18, 48, 8B, DA, 4C, 8B, C9, 41, 83, E3, F8, 41, F6, 00, 04, 4C, 8B, D1, 74, 13, 41, 8B, 40, 08, 4D, 63, 50, 04, F7, D8, 4C, 03, D1, 48, 63, C8, 4C, 23, D1, 49, 63, C3, 4A, 8B, 14, 10, 48, 8B, 43, 10, 8B, 48, 08, 48, 03, 4B, 08, F6, 41, 03, 0F, 74, 0C, 0F, B6, 41, 03, 83, E0, F0, 48, 98, 4C, 03, C8, 4C, 33, CA, 49, 8B, C9, 48, 83, C4, 20, 5B, E9, 91, F8, FF, FF, CC, 48, 83, EC, 28, 4D, 8B, 41, 38...
 
[+]

Code size:
3.2 MB (3,359,744 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
phion

Command:
C:\Program Files\barracudang\phion.exe