apalert.exe

Padvish Alert

Amnpardaz Software Company

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Padvish EPS Alert Daemon’.
Publisher:
Amnpardaz Software Company  (signed and verified)

Product:
Padvish Alert

Version:
1, 7, 48, 1350

MD5:
af7b011bc434d9bfeeb50ab91aa2bc96

SHA-1:
6dea76194560dfa9a801a021ce83050423ab6e68

SHA-256:
04ce88a00446aabf231c32861747d01c7412bcd0656a0db51f8f842ebce20159

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 12:41:55 AM UTC  (today)

File size:
8 MB (8,378,960 bytes)

Product version:
1, 7, 48, 1350

Copyright:
Copyright (C) 2010

Original file name:
EPS_Alert.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\padvish eps\apalert.exe

Digital Signature
Authority:
Amnpardaz Software Company

Valid from:
5/15/2013 10:29:49 AM

Valid to:
1/1/2040 3:29:59 AM

Subject:
CN=Amnpardaz Software Company

Issuer:
CN=Amnpardaz Software Company

Serial number:
E3B9D1C905E53EBB43A6AD035155A322

File PE Metadata
Compilation timestamp:
5/13/2015 12:13:53 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:i67ry0EieTscMCpnL11JSsQs4KN9dKA+tXcXwnAfDO7OJsv6tWKFdu9Cp:i6yiGsoBbQs4AdKCXCYnJsv6tWKFdu9i

Entry address:
0x4063BF

Entry point:
E8, 8C, 08, 00, 00, E9, 63, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, 57, 56, 53, 33, FF, 8B, 44, 24, 14, 0B, C0, 7D, 14, 47, 8B, 54, 24, 10, F7, D8, F7, DA, 83, D8, 00, 89, 44, 24, 14, 89, 54, 24, 10, 8B, 44, 24, 1C, 0B, C0, 7D, 14, 47, 8B, 54, 24, 18, F7, D8, F7, DA, 83, D8, 00, 89, 44, 24, 1C, 89, 54, 24, 18, 0B, C0, 75, 18, 8B, 4C, 24, 18, 8B, 44, 24, 14, 33, D2, F7, F1, 8B, D8, 8B, 44, 24, 10, F7, F1, 8B, D3, EB, 41, 8B, D8, 8B, 4C, 24, 18, 8B, 54, 24, 14, 8B, 44, 24, 10, D1, EB, D1, D9, D1, EA, D1, D8...
 
[+]

Entropy:
7.0681

Code size:
4.3 MB (4,483,072 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Padvish EPS Alert Daemon

Command:
"C:\Program Files\padvish eps\apalert.exe"


Scan apalert.exe - Powered by Reason Core Security