RegIEPlugin.exe

HttpWatch Basic

Neumetrix Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘HttpWatch_RegIEPlugin’.
Publisher:
Neumetrix Limited  (signed and verified)

Product:
HttpWatch Basic

Description:
HttpWatch Basic - HTTP Viewer for IE

Version:
10.0.59

MD5:
9fa063692b66733b64efdb552ce6bf0d

SHA-1:
00c3b3c3666762a9392eae9f70203af859c86b4a

SHA-256:
956ff6d2b1a5e3df1f6de2116a776ebc9d9a897f6ea4c58840e509857a00cced

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 7:06:37 AM UTC  (today)

File size:
2.3 MB (2,390,256 bytes)

Product version:
10.0.59

Copyright:
Copyright 2002 -2017 Neumetrix Limited

Original file name:
RegIEPlugin.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\httpwatch\regieplugin.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
3/8/2016 3:00:00 AM

Valid to:
3/9/2019 2:59:59 AM

Subject:
CN=Neumetrix Limited, O=Neumetrix Limited, POBox=TQ12 4SL, STREET="2 Higher Ashlands, Connybear Lane", L=Coffinswell, S=Devon, PostalCode=TQ12 4SL, C=GB

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
19276567C8FF1E84EB77EC659C001C50

File PE Metadata
Compilation timestamp:
2/22/2017 5:17:59 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x148A84

Entry point:
E8, C2, A5, 00, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, 69, 00, 00, 00, C7, 06, 48, F5, 5C, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 56, 8D, 45, 08, 8B, F1, 50, E8, 0D, 00, 00, 00, C7, 06, 48, F5, 5C, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 8B, 45, 08, 56, 8B, F1, 83, 66, 04, 00, C7, 06, 28, F5, 5C, 00, C6, 46, 08, 00, FF, 30, E8, B9, 00, 00, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 8B, 45, 08, C7, 01, 28, F5, 5C, 00, 8B, 00, 89, 41, 04, 8B, C1, C6, 41, 08, 00, 5D, C2, 08...
 
[+]

Entropy:
6.5609

Code size:
1.6 MB (1,713,152 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
HttpWatch_RegIEPlugin

Command:
C:\Program Files\httpwatch\regieplugin.exe


Scan RegIEPlugin.exe - Powered by Reason Core Security