ccApp.exe

Client and Host Security Platform

Symantec Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘ccApp’.
Publisher:
Symantec Corporation  (signed and verified)

Product:
Client and Host Security Platform

Description:
Symantec User Session

Version:
106.0.0.57

MD5:
4e0fc85032e6e8fde9110dac61392424

SHA-1:
17c48ef2f181b5b7fad7a5332d6cdcaa292c353d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 11:58:32 PM UTC  (a few moments ago)

File size:
64.7 KB (66,208 bytes)

Product version:
106.0.0.57

Copyright:
Copyright (c) 2000-2005 Symantec Corporation. All rights reserved.

Original file name:
ccApp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\common files\symantec shared\ccapp.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/27/2005 2:00:00 AM

Valid to:
11/25/2006 1:59:59 AM

Subject:
CN=Symantec Corporation, OU=Symantec Research Labs, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Symantec Corporation, L=Santa Monica, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
035F9A870E1DCB22429E23C72621C313

File PE Metadata
Compilation timestamp:
6/17/2006 5:11:51 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
1536:ehXtGNaeerSzvnJf6wEjIPeqjkooxkQvf5snux4oAmS:GtGCrC0wEkPeqjkou5snufm

Entry address:
0x7BFE

Entry point:
6A, 74, 68, 98, C1, 40, 00, E8, 0A, 02, 00, 00, 33, FF, 89, 7D, E0, 57, 8B, 1D, A0, 90, 40, 00, FF, D3, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03, C8, 81, 39, 50, 45, 00, 00, 75, 12, 0F, B7, 41, 18, 3D, 0B, 01, 00, 00, 74, 1F, 3D, 0B, 02, 00, 00, 74, 05, 89, 7D, E4, EB, 27, 83, B9, 84, 00, 00, 00, 0E, 76, F2, 33, C0, 39, B9, F8, 00, 00, 00, EB, 0E, 83, 79, 74, 0E, 76, E2, 33, C0, 39, B9, E8, 00, 00, 00, 0F, 95, C0, 89, 45, E4, 89, 7D, FC, 6A, 02, FF, 15, 64, 91, 40, 00, 59, 83, 0D, B8, E3, 40, 00, FF, 83...
 
[+]

Entropy:
6.1533

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
30.5 KB (31,232 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ccApp

Command:
"C:\Program Files\common files\symantec shared\ccapp.exe"