CRLAutoCacheService.exe

CRLAutoCache

U.S. Government

It runs as a separate (within the context of its own process) windows Service named “CRLAutoCache”.
Publisher:
U.S. Government  (signed and verified)

Product:
CRLAutoCache

Version:
3.3

MD5:
c2e23de850987041d8304db6eb8e787a

SHA-1:
189a54b4c065819a1d3de6cc45910e10913d4368

SHA-256:
355a07e8c6c66b4610a7b2e1e843cf987f8ab50626c16ee73caa70fbc03e4856

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 11:37:56 AM UTC  (today)

File size:
24.6 KB (25,216 bytes)

Product version:
3.3

Copyright:
Copyright © 2012

Original file name:
CRLAutoCacheService.exe

File type:
Executable application (Win64 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\dod-pke\crlautocache 4.0\crlautocacheservice.exe

Digital Signature
Signed by:

Authority:
U.S. Government

Valid from:
7/27/2011 10:28:32 AM

Valid to:
7/27/2014 10:28:32 AM

Subject:
CN=CS.DoD PKE Engineering.DoDPKE60002, OU=DISA, OU=PKI, OU=DoD, O=U.S. Government, C=US

Issuer:
CN=DOD CA-21, OU=PKI, OU=DoD, O=U.S. Government, C=US

Serial number:
01837B

File PE Metadata
Compilation timestamp:
7/3/2014 8:58:07 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:wnjtyNhxxy3s1c/qNO9RrZk96xlCODjgrwrEr/rm9CGU5nYPLGEPlI0BMl:DhxEnMGmY/tw8wbSi5gPSn

Entry address:
0x5BFE

Entry point:
48, A1, 00, 20, 00, 40, 00, 00, 00, 00, FF, E0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.3627

Code size:
15.5 KB (15,872 bytes)

Service
Display name:
CRLAutoCache

Description:
CRLAutoCache is used to download the latest CRLs and other objects from the DoD PKI. It provides the ability to update common CRL caches on Windows including MS CAPI, network shares, and NSS databases

Type:
Win32OwnProcess


Scan CRLAutoCacheService.exe - Powered by Reason Core Security