spkl.exe

Host application

NOVYE SISTEMY, OOO

Publisher:
NOVYE SISTEMY, OOO  (signed and verified)

Product:
Host application

Description:
System component

Version:
1.0.10.5

MD5:
3b309c0eb836cef069035b507d6de7aa

SHA-1:
98e35c81bab0e8afd2b36dfcccb7e6f907b06082

SHA-256:
9534b5ded23320ffea9edd1c5fb7fa18028b81237c81b116e72cc0bc3f01a79a

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/24/2024 3:01:54 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Floxif.H virus
6.3.12010.0

File size:
2.3 MB (2,418,775 bytes)

Product version:
1.0.10.5

Original file name:
spkl.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\{827d21cc-a22d-45d6-23ca-451ddac769ba}\spkl.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
4/22/2016 1:00:00 AM

Valid to:
4/23/2017 12:59:59 AM

Subject:
CN="NOVYE SISTEMY, OOO", O="NOVYE SISTEMY, OOO", STREET="d.51 k.151, ul.Uritskogo", L=Kirov, S=Kirov, PostalCode=610002, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
0090AF4563EB9BA71C218D13BE65D56D08

File PE Metadata
Compilation timestamp:
12/12/2016 1:05:00 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x1000

Entry point:
E9, 98, C3, 11, 00, E8, 01, 00, 00, 00, C3, C3, 79, B1, 21, 8F, 03, B0, BF, 95, 94, 54, BC, BF, A1, 94, CF, E0, ED, 3B, ED, 23, E2, FD, 5A, 98, 92, 64, 5F, C6, AD, A2, 36, 69, A0, 8E, A1, 36, 0F, C4, 9A, C1, A3, 78, 7D, 0C, 75, 9B, 79, 77, 3E, 27, 91, 35, 54, 21, F6, A8, C0, 42, BB, 09, 4D, 17, 50, B5, 72, CC, 46, C4, 98, A0, C3, E2, 9D, 2C, 31, 20, CB, EB, EE, E2, 3A, E3, 87, 79, D8, 1A, 5A, 98, 68, C7, EA, B7, 3E, 6D, BF, 45, DF, 71, 21, A4, 36, 2F, 34, 31, FD, A5, 3D, A1, E1, 79, FB, 2D, 31, 85, 39, B7...
 
[+]

Entropy:
7.9553

Packer / compiler:
Xtreme-Protector v1.05

Code size:
4.2 MB (4,414,464 bytes)

Scan spkl.exe - Powered by Reason Core Security