iiscrypto.exe

IIS Crypto

Nartac Software Inc.

Publisher:
Nartac Software Inc.  (signed and verified)

Product:
IIS Crypto

Version:
1.3.4.0

MD5:
75896108e8ecb484dc945be27e54d903

SHA-1:
9f7f8dcd1e4cc52f2af15de73492b325d6195192

SHA-256:
2e503ef2a67e1408a78ab723265ef14d17951a8ebb6846373dafe8465881994e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 2:23:19 PM UTC  (today)

File size:
64.9 KB (66,416 bytes)

Product version:
1.3.4.0

Copyright:
Copyright © 2011-2012 Nartac Software Inc.

Original file name:
IISCrypto.Main.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Digital Signature
Authority:
StartCom Ltd.

Valid from:
4/29/2011 11:48:51 AM

Valid to:
4/29/2013 2:24:23 AM

Subject:
E=contact@nartac.com, CN=Nartac Software Inc., O=Nartac Software Inc., L=Burnaby, S=British Columbia, C=CA, Description=415316-i5urlfG02AfBie7v

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0320

File PE Metadata
Compilation timestamp:
12/12/2012 9:29:02 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:RWkRjcaMpc1ylHnf1odx1ObOJzHK1KJiJLJ2J/JXTSChTc+DVqXkvUCoO2zzwg+L:vjcaMpcMHntodvY5U1EItQMa7jSWW

Entry address:
0xE8DA

Entry point:
FF, 25, E8, E8, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, BC, E8, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, BE, A2, C8, 50, 00, 00, 00, 00, 02, 00, 00, 00, 7C, 00, 00, 00, 0C, E9, 00, 00, 0C, CB, 00, 00, 52, 53, 44, 53, 18, 44, BA, 62, 0C, 10, 39, 43, 91, 4E, DA, F4, 42, AB, 43, F8, 01, 00, 00, 00, 43, 3A, 5C, 44, 61, 74, 61, 5C, 53, 75, 62, 76, 65, 72, 73, 69, 6F, 6E, 5C, 47, 69, 64, 64, 65, 6E, 73, 5C, 54, 72, 75, 6E, 6B, 5C, 50, 72, 6F, 6A, 65, 63, 74, 73, 5C, 4E, 61, 72, 74, 61, 63, 5C, 49, 49, 53, 43, 72...
 
[+]

Entropy:
6.0070

Code size:
50.5 KB (51,712 bytes)

The file iiscrypto.exe has been seen being distributed by the following URL.

Scan iiscrypto.exe - Powered by Reason Core Security