EracentEPAService.exe

EnterpriseAM

Eracent Inc.

It runs as a separate (within the context of its own process) windows Service named “EracentEPAService”.
Publisher:
Eracent Corporation  (signed by Eracent Inc.)

Product:
EnterpriseAM

Description:
End Point Analyzer

Version:
9.8.0.35 (2012-09-18) x64

MD5:
0feaf91a9ebd9598111f17cea34524f6

SHA-1:
37ed0252c8b00f3b8a99cedef197a589c7303f4c

SHA-256:
2367330c489f9acc2551bd4f401f30f9dc8fbc294867867fff0bc0f56fc7b2cc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/16/2024 4:48:18 PM UTC  (today)

File size:
6.7 MB (6,991,952 bytes)

Product version:
9.8.0.0

Copyright:
Copyright 2007

Original file name:
EracentEPAService.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
8/16/2011 3:48:50 PM

Valid to:
8/16/2014 3:48:50 PM

Subject:
CN=Eracent Inc., O=Eracent Inc., L=Ottsville, S=PA, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11217A5C343EAB92CE97DD47D91D2430762C

File PE Metadata
Compilation timestamp:
9/19/2012 4:21:13 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:LMhal0ekaDUfkH/lr1OXp+W9Z9BGse6sSr4gfGqbrpB7TBKMpc1bG8YgQW3M/VFl:dlujflj7lWtA/VbLvmWq7ONtgC

Entry address:
0x417260

Entry point:
48, 83, EC, 28, E8, A7, 36, 01, 00, 48, 83, C4, 28, E9, 0E, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 8D, 05, 91, B7, 0B, 00, 48, 89, 01, E9, 21, 4A, FF, FF, CC, 48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8D, 05, 77, B7, 0B, 00, 8B, DA, 48, 8B, F9, 48, 89, 01, E8, 02, 4A, FF, FF, F6, C3, 01, 74, 08, 48, 8B, CF, E8, 05, 4B, FF, FF, 48, 8B, C7, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, C3, CC, CC, CC, CC, CC, CC, CC, 48, 83, EC, 28, 48, 8B, 01, 8B, 08, 81, F9, 4D, 4F, 43, E0, 74...
 
[+]

Entropy:
6.0109

Code size:
4.5 MB (4,732,928 bytes)

Service
Display name:
EracentEPAService

Description:
Eracent End Point Analyzer

Type:
Win32OwnProcess

Depends on:
RPCSS


Scan EracentEPAService.exe - Powered by Reason Core Security