EESYSTRY.EXE

Entrust Entelligence Security Provider

Entrust, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘eesystry.exe’.
Publisher:
Entrust(R)  (signed by Entrust, Inc.)

Product:
Entrust Entelligence Security Provider

Description:
Entrust Entelligence Taskbar Notification

Version:
9.2.10.3202

MD5:
0cae17722758558cc0fbe269452a67de

SHA-1:
3a1d1f2daf72872d819b68501ab32a795a5f1d01

SHA-256:
28f0a8d87497bbcf3dddb4153f33bd8a1cc12af338e74dd3471755308ed8886b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 3:29:28 AM UTC  (today)

File size:
105.1 KB (107,616 bytes)

Product version:
9.2

Copyright:
Copyright 1994-2012 Entrust. All rights reserved.

Trademarks:
Entrust is a trademark or registered trademark of Entrust, Inc.

Original file name:
EESYSTRY.EXE

File type:
Executable application (Win32 EXE)

Language:
English (Canada)

Common path:
C:\Program Files\common files\entrust\esp\eesystry.exe

Digital Signature
Signed by:

Authority:
Entrust, Inc.

Valid from:
3/5/2012 1:24:13 PM

Valid to:
3/5/2015 11:47:18 PM

Subject:
CN="Entrust, Inc.", O="Entrust, Inc.", L=Kanata, ST=Ontario, C=CA

Issuer:
CN=Entrust Code Signing Certification Authority - L1D, OU="(c) 2009 Entrust, Inc.", OU=www.entrust.net/rpa is incorporated by reference, O="Entrust, Inc.", C=US

Serial number:
4C1710AE

File PE Metadata
Compilation timestamp:
5/28/2012 3:51:12 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:/Led9I9P8doZLmIw1wpgev/V/N/h/I/1li/K/09yVIvh5gSSO7Wd6IOI+VqesTO0:/LxZLmnkTvh5tG6zsTOsRGkJ

Entry address:
0x116DA

Entry point:
E8, 74, 05, 00, 00, E9, 6B, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 80, F9, 40, 73, 16, 80, F9, 20, 73, 06, 0F, AD, D0, D3, FA, C3, 8B, C2, C1, FA, 1F, 80, E1, 1F, D3, F8, C3, C1, FA, 1F, 8B, C2, C3, CC, FF, 25, 54, 32, 41, 00, FF, 25, 50, 32, 41, 00, FF, 25, 4C, 32, 41, 00, FF, 25, 3C, 32, 41, 00, FF, 25, 38, 32, 41, 00, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 6C, 82, 41, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D...
 
[+]

Entropy:
6.4242

Code size:
70 KB (71,680 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
eesystry.exe

Command:
C:\Program Files\common files\entrust\esp\eesystry.exe


Scan EESYSTRY.EXE - Powered by Reason Core Security