ThinClientArch.ocx

ThinClientArch

The Allstate Corporation

Publisher:
Accenture  (signed by The Allstate Corporation)

Product:
ThinClientArch

Version:
1.00

MD5:
3e82f34681de13074e274caf5d4b7af7

SHA-1:
6a54c4a266ce723eb7d473149dd60c08061364db

SHA-256:
78cf86f19943b60d32c0aa0637a4840b06875ea50d49508039817d8d96a7dc33

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/28/2024 4:31:25 PM UTC  (today)

Scan engine
Detection
Engine version

IKARUS anti.virus
Trojan-Dropper.Win32.Injector
t3scan.1.1.122.0

File size:
54.1 KB (55,432 bytes)

Product version:
1.00

Original file name:
ThinClientArch.ocx

File type:
OLE control extension (Win32 OCX)

Language:
English (United States)

Common path:
C:\windows\syswow64\thinclientarch.ocx

Digital Signature
Authority:
Entrust, Inc.

Valid from:
5/23/2011 1:36:51 PM

Valid to:
5/21/2014 2:11:36 AM

Subject:
CN=The Allstate Corporation, O=The Allstate Corporation, L=Northbrook, S=Illinois, C=US

Issuer:
CN=Entrust Code Signing Certification Authority - L1D, OU="(c) 2009 Entrust, Inc.", OU=www.entrust.net/rpa is incorporated by reference, O="Entrust, Inc.", C=US

Serial number:
4C16F1A9

File PE Metadata
Compilation timestamp:
2/18/2002 6:05:40 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
768:QI18U0zR6kwL7is7pAZTVbD0LjMecpoNwcxA/r:FCtRzmpWh07cpH/

Entry address:
0x15F4

Entry point:
5A, 68, 50, 9D, 00, 11, 68, 54, 9D, 00, 11, 52, E9, E9, FF, FF, FF, 00, 00, 00, 58, 00, 00, 00, 30, 00, 00, 00, 50, 00, 00, 00, 40, 00, 00, 00, 77, 88, 91, B1, D1, 03, 6F, 42, 8E, BC, 0B, 6D, B8, 29, 1E, 77, 00, 00, 00, 00, 02, 00, 02, 00, 00, 00, 2A, 2A, 2A, 2A, 2A, 2A, 54, 68, 69, 6E, 43, 6C, 69, 65, 6E, 74, 41, 72, 63, 68, 00, 6E, 54, 68, 69, 6E, 43, 6C, 69, 65, 6E, 74, 41, 72, 63, 68, 00, 72, 00, 50, 49, 52, 2C, 20, 43, 52, 00, 00, 00, 00, A0, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.2391

Developed / compiled with:
Microsoft Visual Basic v6.0

Code size:
32 KB (32,768 bytes)

Scan ThinClientArch.ocx - Powered by Reason Core Security