starter.exe

NANO AntiVirus

NANO Security Ltd

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NANO AntiVirus’.
Publisher:
NANO Security  (signed by NANO Security Ltd)

Product:
NANO AntiVirus

Description:
NANO AntiVirus component

Version:
0.14.0.5

MD5:
a85ffc08fc50a994ed132c492126c6d5

SHA-1:
aedd508d7362aba8bdfaefbb114419f007aad454

SHA-256:
1b8a206183331b56f633896683d757d6c27474b2aa6ae64548b58a1dfc5a0fa6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/13/2025 4:30:20 AM UTC  (today)

File size:
977.3 KB (1,000,776 bytes)

Product version:
0.14.0.5

Copyright:
Copyright (C) 2010 NANO Security

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\nanoav\starter.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/5/2010 7:00:00 PM

Valid to:
2/6/2011 6:59:59 PM

Subject:
CN=NANO Security Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NANO Security Ltd, L=Bryansk, S=none, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5DD15C0DDD8F07A8EE5048A0E7950FB1

File PE Metadata
Compilation timestamp:
1/21/2011 10:08:00 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x18521

Entry point:
E8, E2, 46, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 0F, B7, 10, 53, 56, 57, 66, 85, D2, 74, 29, 8B, 5D, 0C, 0F, B7, 3B, 8B, F3, 66, 85, FF, 74, 12, 0F, B7, CF, 66, 3B, CA, 74, 16, 46, 46, 0F, B7, 0E, 66, 85, C9, 75, F1, 40, 40, 0F, B7, 10, 66, 85, D2, 75, DD, 33, C0, 5F, 5E, 5B, 5D, C3, 8B, FF, 55, 8B, EC, 83, EC, 20, 8B, 45, 08, 56, 57, 6A, 08, 59, BE, 40, A9, 42, 00, 8D, 7D, E0, F3, A5, 89, 45, F8, 8B, 45, 0C, 5F, 89, 45, FC, 5E, 85, C0, 74, 0C, F6, 00, 08, 74, 07, C7, 45, F4, 00, 40...
 
[+]

Entropy:
6.0845

Code size:
162 KB (165,888 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NANO AntiVirus

Command:
"C:\Program Files\nanoav\starter.exe" \useadmin


Scan starter.exe - Powered by Reason Core Security