NAVClient.exe

Neo Security Antivirus

Neo Technology S.A de C.V

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Neo Security Antivirus 5’.
Publisher:
Neo Technology  (signed by Neo Technology S.A de C.V)

Product:
Neo Security Antivirus

Version:
5.00.0001

MD5:
f42920759061c4685b744f4580a21715

SHA-1:
7a925217b70eb69617f960d6f2d8e556bb8a6db4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 10:35:28 AM UTC  (today)

File size:
870.3 KB (891,200 bytes)

Product version:
5.00.0001

Copyright:
Neo Technology

Trademarks:
Neo Technology

Original file name:
NAVClient.exe

File type:
Executable application (Win32 EXE)

Language:
Spanish

Common path:
C:\Program Files\neo technology\neo security antivirus 5\navclient.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/11/2013 6:00:00 PM

Valid to:
3/12/2014 5:59:59 PM

Subject:
CN=Neo Technology S.A de C.V, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Neo Technology S.A de C.V, L=Mexico, S=Distrito Federal, C=MX

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
723B698CF4F202ABFD3F6034406F6D42

File PE Metadata
Compilation timestamp:
4/30/2013 11:09:12 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:Ksa9BKbB9YfFv3fC1NaeQRYWXP5t7mBzGlqX:Ksa9sbjYdvPC1NaeQRYWXP5MBzGQ

Entry address:
0x6B98

Entry point:
68, 40, D2, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, DE, 9D, 31, A5, E7, 49, 46, 45, B5, 31, F9, EF, A3, 80, 48, 16, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 2D, 38, 44, 32, 32, 2D, 4E, 65, 6F, 5F, 53, 65, 63, 75, 72, 69, 74, 79, 5F, 41, 6E, 74, 69, 76, 69, 72, 75, 73, 00, 41, 00, 00, 00, 00, FF, CC, 31, 00, 11, 79, AC, 05, E5, 1F, 40, E4, 4B, 96, DF, 79, 35, CE, EB, DE, FE, 06, A2, DD, 39, 8D, B5, 08, 48, 96, 99, C2, FE, 69, 99, A1, 83, 3A, 4F, AD...
 
[+]

Entropy:
5.9309

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
828 KB (847,872 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Neo Security Antivirus 5

Command:
"C:\Program Files\neo technology\neo security antivirus 5\navclient.exe"


Scan NAVClient.exe - Powered by Reason Core Security