vfon.EXE

Softfoundry VMEET

SOFTFOUNDRY International Pte Ltd

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Softfoundry VMEET’.
Publisher:
Softfoundry International Pte Ltd.  (signed by SOFTFOUNDRY International Pte Ltd)

Product:
Softfoundry VMEET

Version:
1, 0, 0, 41

MD5:
ee12d761cf727fdb338b123b49b9f243

SHA-1:
8c91eaf1a82a7d4e249e840a2947b6a61c9c3f54

SHA-256:
56183fae70cd8436b7eb19ab891aae5986e8e126f7e65b4eef4011b6522a82a0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 4:40:24 AM UTC  (today)

File size:
15.8 MB (16,534,632 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright (C) 2003-2008 Softfoundry International Pte Ltd.

Original file name:
vfon.EXE

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\softfoundry vmeet\vfon.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/21/2008 8:00:00 AM

Valid to:
12/9/2009 7:59:59 AM

Subject:
CN=SOFTFOUNDRY International Pte Ltd, OU=Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SOFTFOUNDRY International Pte Ltd, L=Singapore, S=Singapore, C=SG

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
78AF4D287268BCC0A1413D19DFE3B9B9

File PE Metadata
Compilation timestamp:
7/1/2009 5:15:47 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
196608:t6vGMDqY5j10fHzNKVVxSqYcMRnCHPk50EhBDw/ncgirR:LW0fHzNKvihBDwxirR

Entry address:
0x7E4E90

Entry point:
6A, 74, 68, 28, 72, FD, 00, E8, 38, 06, 00, 00, 33, DB, 89, 5D, E0, 53, 8B, 3D, F4, 12, EE, 00, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03, C8, 81, 39, 50, 45, 00, 00, 75, 12, 0F, B7, 41, 18, 3D, 0B, 01, 00, 00, 74, 1F, 3D, 0B, 02, 00, 00, 74, 05, 89, 5D, E4, EB, 27, 83, B9, 84, 00, 00, 00, 0E, 76, F2, 33, C0, 39, 99, F8, 00, 00, 00, EB, 0E, 83, 79, 74, 0E, 76, E2, 33, C0, 39, 99, E8, 00, 00, 00, 0F, 95, C0, 89, 45, E4, 89, 5D, FC, 6A, 02, FF, 15, 8C, 2F, EE, 00, 59, 83, 0D, C4, 38, 14, 01, FF, 83...
 
[+]

Entropy:
6.5194

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
10.9 MB (11,403,264 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Softfoundry VMEET

Command:
"C:\Program Files\softfoundry vmeet\vfon.exe"


Scan vfon.EXE - Powered by Reason Core Security