nevti.exe

Network Event Viewer

Corner Bowl Software Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Network Event Viewer’.
Publisher:
Corner Bowl Software Corporation  (signed and verified)

Product:
Network Event Viewer

Description:
NEVTrayIcon

Version:
8.0.0.36

MD5:
62351da633cabdd21fc8ef6743975482

SHA-1:
661d0e970afbfa7c7fab923a8dbabb9d85e5d5c4

SHA-256:
6223e0d68647603eb45f4d8b46a2f40d4cd946f4ea9425cb54295cd31006f88a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 4:48:52 PM UTC  (today)

File size:
38 KB (38,872 bytes)

Product version:
8.0.0.36

Copyright:
Copyright (c) 2002-2008 Corner Bowl Software Corporation All rights reserved

Original file name:
nevti.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\network event viewer\nevti.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
5/1/2008 2:00:00 AM

Valid to:
5/2/2009 1:59:59 AM

Subject:
CN=Corner Bowl Software Corporation, O=Corner Bowl Software Corporation, STREET=P.O. Box 682876, L=Park City, S=UT, PostalCode=84068, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00F2D3C14DF15699703DD14C7E7A4677C2

File PE Metadata
Compilation timestamp:
7/1/2008 6:10:13 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:dGes1M6aLNck8xovqbsLBw9FKNbm3THnvqZ96u3X96u3c96u3Amv896u3AW96u3Q:dGes1NId8xJeCinJYA3AGAxcC/n

Entry address:
0x658E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
20 KB (20,480 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Network Event Viewer

Command:
C:\Program Files\network event viewer\nevti.exe


Scan nevti.exe - Powered by Reason Core Security