iv_nt86.exe

InoculateIT

Computer Associates Int'l

Publisher:
Computer Associates Int'l

Product:
InoculateIT

Description:
Incremental Update for VET signature (for Windows NT)

Version:
31.6.6435

MD5:
ffdea4298d305934d3c0a8816388f060

SHA-1:
85eb95a026b528e3d7be585cf9e17af1f54f239f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 11:23:54 AM UTC  (today)

File size:
195.1 KB (199,753 bytes)

Product version:
6.0

Copyright:
Copyright Computer Associates Int'l © 2000

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\ca\common\scanengine\incoming\iv_nt86.exe

File PE Metadata
Compilation timestamp:
9/10/2003 11:35:09 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:K70RLeKlQViRKfladhMqRGinwuQZioJEbX82z2jlGNEHMloqq9jkj5o4o2V:1RCK4i4I3nLgE+Gfu9jc5o4o2V

Entry address:
0xE034

Entry point:
55, 8B, EC, 6A, FF, 68, B0, 69, 41, 00, 68, 44, 2A, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 24, 61, 41, 00, 33, D2, 8A, D4, 89, 15, 2C, C3, 41, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 28, C3, 41, 00, C1, E1, 08, 03, CA, 89, 0D, 24, C3, 41, 00, C1, E8, 10, A3, 20, C3, 41, 00, 33, F6, 56, E8, CC, 10, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 52, 25, 00, 00, FF, 15, 20, 61, 41, 00, A3, E8, C9, 41, 00, E8...
 
[+]

Entropy:
6.8348

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
84 KB (86,016 bytes)

The file iv_nt86.exe has been seen being distributed by the following URL.

Scan iv_nt86.exe - Powered by Reason Core Security