EPPService.exe

Endpoint Protector

CoSoSys SRL

It runs as a separate (within the context of its own process) windows Service named “Endpoint Protector”.
Publisher:
CoSoSys  (signed by CoSoSys SRL)

Product:
Endpoint Protector

Version:
4.3.0.0

MD5:
e51702d315b7e29d65fd7272164ecf3a

SHA-1:
8a6b4532a39ef339db9c5aa661c393c0dd5edf42

SHA-256:
a1661be9a3fb24bdb372fdc6f475769dbb7ce03f0fef9f7fecf7103c81b651c0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 7:58:36 AM UTC  (today)

File size:
15.7 KB (16,040 bytes)

Product version:
4.3.0.0

Copyright:
© 2006-2014 CoSoSys All rights reserved.

Original file name:
EPPService.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\cososys ltd\endpoint protector\eppservice.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
3/5/2013 7:16:09 PM

Valid to:
5/3/2016 12:05:32 AM

Subject:
E=info@cososys.com, CN=CoSoSys SRL, OU=Code Siging, O=CoSoSys SRL, L=Cluj-Napoca, S=Cluj, C=RO

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112117AB901EFA71553532E0E4DB6EDABB52

File PE Metadata
Compilation timestamp:
12/17/2014 7:46:11 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
384:XpikD704ogMNQPfOOV+l4fnDH7wp7n2KtPLRD5VA:XpikH01qPfOI+mAV2sDU

Entry address:
0x13F1

Entry point:
E8, 42, 05, 00, 00, E9, 9F, FD, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 90, 31, 40, 00, 89, 0D, 8C, 31, 40, 00, 89, 15, 88, 31, 40, 00, 89, 1D, 84, 31, 40, 00, 89, 35, 80, 31, 40, 00, 89, 3D, 7C, 31, 40, 00, 66, 8C, 15, A8, 31, 40, 00, 66, 8C, 0D, 9C, 31, 40, 00, 66, 8C, 1D, 78, 31, 40, 00, 66, 8C, 05, 74, 31, 40, 00, 66, 8C, 25, 70, 31, 40, 00, 66, 8C, 2D, 6C, 31, 40, 00, 9C, 8F, 05, A0, 31, 40, 00, 8B, 45, 00, A3, 94, 31, 40, 00, 8B, 45, 04, A3, 98, 31, 40, 00, 8D, 45, 08, A3, A4, 31, 40...
 
[+]

Entropy:
6.2300

Code size:
3 KB (3,072 bytes)

Service
Display name:
Endpoint Protector

Description:
Offers permanent protection against endpoint security threats posed by portable storage devices. It secures many ports (like USB, card readers, etc.) on the PC that would be otherwise vulnerable to da

Type:
Win32OwnProcess


Scan EPPService.exe - Powered by Reason Core Security