novinlocknetagent.exe

Novin NetLock

Toshi Electric Sdn Bhd

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NovinLock NetServer Agent’.
Publisher:
NovinAfzar Corporation  (signed by Toshi Electric Sdn Bhd)

Product:
Novin NetLock

Description:
NetServer Agent for Novin HID Lock Security Key

Version:
9.0.0.0

MD5:
53b6daad38e73ea49c742ebb986b43bc

SHA-1:
497b0e46b6ab4f0e01aa6c5beacfb6b98a1a80df

SHA-256:
6e168d3669273fa7a22d8d9e231ede4dddf26fe293d240a3c2bfc91b113d8130

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:49:13 AM UTC  (today)

File size:
167.9 KB (171,960 bytes)

Product version:
9.0

Copyright:
© 2009 Novin Afzar

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\novin afzar\nl netserver\novinlocknetagent.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
8/22/2008 4:30:00 AM

Valid to:
8/23/2011 4:29:59 AM

Subject:
CN=Toshi Electric Sdn Bhd, O=Toshi Electric Sdn Bhd, STREET="No. 97-2A, JLN TKS 1,", STREET=TAMAN KAJANG SENTRAL, L=Kajang, S=Selangor, PostalCode=43000, C=MY

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00BB562C2AD1E41F27206A73D8852B8395

File PE Metadata
Compilation timestamp:
6/20/1992 2:52:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
3072:NbWiwhzd1mBktqXC8dLZjorAYy1ghGHjhpRUOfm9oT63P+UByS/rLsTvZ9D:Nb9wdmBk4y872nkvRUOfqSS+YyS/Evf

Entry address:
0x6BA20

Entry point:
60, BE, 00, 50, 44, 00, 8D, BE, 00, C0, FB, FF, C7, 87, 9C, 30, 05, 00, 0C, C2, 3B, 43, 57, 83, CD, FF, EB, 0E, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 19, 8B, 1E, 83, EE, FC, 11, DB, 72, 10, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 78, D1, F8, 89, C5, EB, 0B, 01, DB, 75, 07...
 
[+]

Entropy:
7.8378

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.22 (Delphi) stub

Code size:
156 KB (159,744 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NovinLock NetServer Agent

Command:
C:\Program Files\novin afzar\nl netserver\novinlocknetagent.exe


Scan novinlocknetagent.exe - Powered by Reason Core Security