jinit.exe

Oracle JInitiator

Oracle

This is a setup program which is used to install the application. The file has been seen being downloaded from smppweb.prison.gov.my.
Publisher:
Oracle

Product:
Oracle JInitiator

Version:
1.3.1.22

MD5:
d7dfd68b46bf515b474fd95dd5978d5a

SHA-1:
d097874c8d6b6973b465da2833533db8d3c245f0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 12:43:41 PM UTC  (today)

File size:
7.7 MB (8,115,960 bytes)

Product version:
1.3.1.22

Original file name:
stub32i.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\Local settings\temporary internet files\content.ie5\{random}\jinit.exe

File PE Metadata
Compilation timestamp:
3/28/2000 2:09:58 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:gjTDY4pn8ZIIraINkUmGo1R/hJ1qVRI8VjkmIHIMMhS7xu/C8:GDL8Z/uUfeR/hW7R1UzmT/C8

Entry address:
0x83F7

Entry point:
11, EB, 84, E4, 8D, 2D, 7B, 4B, 79, CF, F7, C3, C8, 68, EA, 43, F2, 89, F5, 15, 2D, 7D, CC, CD, 4A, C6, C5, 0F, 87, CB, 31, C0, 81, EF, 98, 38, 00, 00, FF, C6, 0A, D9, 81, EF, 63, 09, 00, 00, 8D, 1D, D9, 30, 64, 9D, 68, 40, AA, 0F, 00, 68, FC, 96, C0, 00, C6, C4, D9, 85, ED, 8D, 15, 09, CF, FC, CA, 39, F2, FF, CB, 8D, 35, BF, A8, D4, 41, 85, F1, E8, 20, 00, 00, 00, 8D, 2D, 28, D5, C9, D4, 8B, EE, 80, CB, BE, 23, D6, 0F, BE, D2, 69, E9, 85, C8, C5, B0, 4A, 0F, AF, DB, 81, F9, 13, 91, 00, 00, F2, 4B, 89, F9...
 
[+]

Entropy:
7.9947  (probably packed)

Code size:
68 KB (69,632 bytes)

The file jinit.exe has been seen being distributed by the following URL.

Scan jinit.exe - Powered by Reason Core Security