niagnt32.exe

enteo NetInstall

FrontRange Solutions Deutschland GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NetInstall Agent’.
Publisher:
FrontRange Solutions Deutschland GmbH  (signed and verified)

Product:
enteo NetInstall

Description:
NetInstall Agent

Version:
6.2.1.2890

MD5:
652d5a07d8212fa1f9946997fa189fed

SHA-1:
5119b943b5e7e18892ab1ff6a6f39f0515be81b9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/5/2024 2:13:52 AM UTC  (today)

File size:
213.4 KB (218,552 bytes)

Product version:
6.2

Copyright:
Copyright © 1995-2009 FrontRange Solutions Deutschland GmbH, Phone: +49 (711) 340 190 0

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\Program Files\netinst\niagnt32.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/6/2008 1:00:00 AM

Valid to:
11/7/2009 12:59:59 AM

Subject:
CN=FrontRange Solutions Deutschland GmbH, OU=FrontRange Solutions Deutschland GmbH, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=FrontRange Solutions Deutschland GmbH, L=Filderstadt, S=Baden-Wuerttemberg, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
74CB4FEE53FD6F9AB90E7625A34D04CA

File PE Metadata
Compilation timestamp:
7/13/2009 5:28:58 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x14888

Entry point:
55, 8B, EC, 6A, FF, 68, 68, 27, 42, 00, 68, B0, 47, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 1C, 12, 42, 00, 33, D2, 8A, D4, 89, 15, BC, EE, 42, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, B8, EE, 42, 00, C1, E1, 08, 03, CA, 89, 0D, B4, EE, 42, 00, C1, E8, 10, A3, B0, EE, 42, 00, 6A, 01, E8, C8, 39, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, 54, 20, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Entropy:
6.2338

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
128 KB (131,072 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NetInstall Agent

Command:
C:\Program Files\netinst\niagnt32.exe


Scan niagnt32.exe - Powered by Reason Core Security