agent.exe

Rohos Disk, Rohos Logon Key

Tesline-Service s.r.l.

It runs as a separate (within the context of its own process) windows Service named “Rohos Disk service”.
Publisher:
Tesline-Service SRL  (signed by Tesline-Service s.r.l.)

Product:
Rohos Disk®, Rohos Logon Key®

Description:
Rohos Agent.

Version:
1.7.0

MD5:
1820baabe2f0f10e53eecd549dbf41b5

SHA-1:
056d0098c34bc7f08c64562eb255e0c004d9cbf8

SHA-256:
e73ce4d187f904c39b9da47b168ff31b918c4cee18c904965d6f41bf1c933867

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/24/2024 6:39:07 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.HfsAdware
1.3.0.7133

File size:
782.1 KB (800,880 bytes)

Product version:
1.1.2005

Copyright:
(c) Tesline-service. 2003-2009.

Original file name:
agent.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\rohos\agent.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/14/2009 5:15:18 PM

Valid to:
12/15/2010 5:15:16 PM

Subject:
CN=Tesline-Service s.r.l., O=Tesline-Service s.r.l., L=Chisinau, S=MD, C=MD

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
010000000001258E18FB13

File PE Metadata
Compilation timestamp:
4/30/2010 1:12:07 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:2K+x5nm+bhS5DxiqgeKBUtxh82ltHXqcyatjbMVe7+T3c18h0lUl:n+x5nVhS5wqgeKBUtxK2ltH6cyLe7+t

Entry address:
0x3A715

Entry point:
55, 8B, EC, 6A, FF, 68, 28, 81, 46, 00, 68, 28, DB, 43, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, FC, 32, 46, 00, 33, D2, 8A, D4, 89, 15, 64, C3, 4A, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 60, C3, 4A, 00, C1, E1, 08, 03, CA, 89, 0D, 5C, C3, 4A, 00, C1, E8, 10, A3, 58, C3, 4A, 00, 6A, 01, E8, 7C, 90, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, E7, 2E, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
392 KB (401,408 bytes)

Service
Display name:
Rohos Disk service

Service name:
Rohos Disk

Type:
Win32OwnProcess

Group:
UIGroup


Scan agent.exe - Powered by Reason Core Security