Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

3.27 50.00%
3.25 50.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegOpenKeyW, OpenProcessToken, AddAccessAllowedAce, GetUserNameW, CheckTokenMembership, SetSecurityDescriptorDacl, SetFileSecurityW, RegQueryInfoKeyW, GetSidLengthRequired, InitializeAcl, GetAce, RegSetKeySecurity, FreeSid, RegEnumValueW, RegQueryValueExW, RegEnumKeyExW, RegCreateKeyW, RegCreateKeyExW, RegEnumKeyW, RegOpenKeyExW, RegCloseKey, AllocateAndInitializeSid, InitializeSecurityDescriptor, RegSetValueExW, RegDeleteKeyW, GetSidSubAuthority, DuplicateTokenEx, RegDeleteValueW, InitializeSid
comctl32.dll
CreatePropertySheetPageW, PropertySheetW, ImageList_Create, ImageList_GetIconSize, ImageList_ReplaceIcon, _TrackMouseEvent, ImageList_DrawEx, CreateToolbarEx, ImageList_AddMasked, ImageList_Destroy, InitCommonControlsEx
comdlg32.dll
GetSaveFileNameW, GetOpenFileNameW
gdi32.dll
GetCurrentObject, TextOutW, PatBlt, SetBrushOrgEx, CreateBitmap, CreatePatternBrush, LineTo, SetViewportExtEx, CreateFontW, DeleteDC, GetTextExtentPoint32W, SetTextAlign, SelectObject, DeleteObject, CreateCompatibleBitmap, GetViewportExtEx, SetBkMode, BitBlt, GetStockObject, CreatePen, GetObjectW, CreateCompatibleDC, SetTextColor, GetWindowExtEx, MoveToEx, CreateSolidBrush, StretchBlt, SetWindowExtEx, SetBkColor, ExtTextOutW, CreateDIBitmap, CreateFontIndirectW
kernel32.dll
DllMain
msimg32.dll
GradientFill
ole32.dll
CreateStreamOnHGlobal, CoCreateInstance, CoUninitialize, CoTaskMemFree, CoInitializeSecurity, CoInitialize
shell32.dll
ShellExecuteW, Shell_NotifyIconW, ShellExecuteExW, SHGetPathFromIDListW, SHChangeNotify, SHBrowseForFolderW, CommandLineToArgvW, SHGetMalloc, SHGetFileInfoW, DuplicateIcon, SHGetFolderPathW
shlwapi.dll
PathRelativePathToW, SHDeleteKeyW, SHDeleteEmptyKeyW, SHCopyKeyW
user32.dll
GetMonitorInfoW, IsZoomed, InsertMenuW, CallWindowProcW, MapDialogRect, SetWindowsHookExW, DefWindowProcW, RemovePropW, DrawStateW, WindowFromDC, GetIconInfo, CreateDialogIndirectParamW, MsgWaitForMultipleObjects, SetWindowTextW, SetDlgItemTextW, CreateDialogParamW, IsDialogMessageW, InvalidateRect, BeginPaint, GetSystemMetrics, GetWindowThreadProcessId, GetDlgCtrlID, SetActiveWindow, EndDialog, RegisterClassW, ShowWindow, MessageBoxW, CheckDlgButton, GetDlgItem, IsDlgButtonChecked, LoadImageW, GetWindowRect, ScreenToClient, GetDC, ReleaseDC, DrawTextW, SetTimer, IsWindowEnabled, PostMessageW, SetCursor, SendDlgItemMessageW, GetScrollInfo, SetCapture, MonitorFromWindow, MonitorFromRect, FindWindowW, GetKeyState, DrawEdge, GetWindowTextW, DialogBoxIndirectParamW, CreateWindowExW, FillRect, CallNextHookEx, DrawFocusRect, DispatchMessageW, GetMessageW, TranslateMessage, UpdateWindow, GetSubMenu, UnhookWindowsHookEx, GetDesktopWindow, EnableWindow, IsWindow, SetPropW, GetWindowLongW, GetClassNameA, MapVirtualKeyW, GetPropW, GetClassNameW, EndPaint, GetForegroundWindow, LoadCursorW, GetParent, DialogBoxParamW, SetFocus, GetSysColor, ClientToScreen, DestroyMenu, GetMenu, SetScrollInfo, EnableMenuItem, GetClientRect, GetFocus, IsIconic, RegisterWindowMessageW, SetMenuDefaultItem, DeleteMenu, GetWindowDC, GetCursor, TrackPopupMenu, CreatePopupMenu, IsWindowVisible, MoveWindow, FrameRect, IsCharAlphaW, SetWindowLongW, DestroyIcon, SetForegroundWindow, AppendMenuW, GetCursorPos, SetWindowPos, DestroyWindow, ReleaseCapture, InflateRect, GetKeyNameTextW, GetDlgItemTextW, SendMessageW, MonitorFromPoint, DrawIconEx, LoadIconW, wsprintfW, KillTimer, PeekMessageW, GetWindowPlacement, SetWindowPlacement, PostQuitMessage, AttachThreadInput, InsertMenuItemW, FlashWindowEx, GetSysColorBrush, SetMenuItemInfoW, WaitForInputIdle
wininet.dll
InternetCheckConnectionW, InternetQueryOptionA

filefort.exe

FileFort by NCH Software (Signed)

Remove filefort.exe
Version:   3.25
MD5:   70e8f14112611608fad4569843ace093
SHA1:   74edb7edb390d24a3cfeb55aa73c79d3187125d8
SHA256:   cfe6569620683766acdbd45717fd7617643ae10a126183614efb25cbd11d65d6

Overview

filefort.exe executes as a process with the local user's privileges. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). This is typically installed with the program FileFort Backup published by NCH Software. The file is digitally signed by NCH Software which was issued by the Thawte certificate authority (CA).

DetailsDetails

File name:filefort.exe
Publisher:NCH Software
Product name:FileFort
Description:FileFort Backup
Typical file path:C:\Program Files\nch software\filefort\filefort.exe
File version:3.25
Size:1.04 MB (1,089,576 bytes)
Build date:4/29/2013 8:08 PM
Certificate
Issued to:NCH Software
Authority (CA):Thawte
Expiration date:Friday, February 8, 2013
Digital DNA
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
NCH Software
20% remove
An easy file backup program to automatically back up your critical data. Don't take chances with your data. Use backup software to manually back up files, or automate the backup process to keep data safe and secure.

BehaviorsBehaviors

Scheduled tasks
  • The job 'FileFortReminder' in the path '\NCH Software\FileFortReminder'
Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'FileFort' → "C:\Program Files\NCH Software\FileFort\filefort.exe" -logon

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 100.00%

Distribution by countryDistribution by country

United Kingdom installs about 50.00% of FileFort.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Medion 50.00%
ASUS 50.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE