EracentEPAService.exe

EnterpriseAM

Eracent Inc.

It runs as a separate (within the context of its own process) windows Service named “EracentEPAService”.
Publisher:
Eracent Corporation  (signed by Eracent Inc.)

Product:
EnterpriseAM

Description:
End Point Analyzer

Version:
10.1.60.0 (2015-08-04) x64

MD5:
f5babf3137dfec6cc91399b24b95d640

SHA-1:
5109e939e0bce0a354d5c2f33a0ab8b86532ae93

SHA-256:
2071aca5b797a6731e00d1a68f5f3bbebb8396895fe9765c041210bec56cc7b4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
6/1/2024 3:37:18 AM UTC  (today)

File size:
7.5 MB (7,815,416 bytes)

Product version:
10.1.60.0

Copyright:
Copyright 2007

Original file name:
EracentEPAService.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\eracent\epa\eracentepaservice.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
7/18/2014 3:58:50 PM

Valid to:
9/15/2017 8:48:50 PM

Subject:
CN=Eracent Inc., O=Eracent Inc., L=Ottsville, S=PA, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121CAE7916D187E2C34EF83748AA47DCEF8

File PE Metadata
Compilation timestamp:
8/4/2015 3:54:47 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x4820D0

Entry point:
48, 83, EC, 28, E8, 47, 37, 01, 00, 48, 83, C4, 28, E9, 0E, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 8D, 05, D1, 23, 0E, 00, 48, 89, 01, E9, E1, 3A, FF, FF, CC, 48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8D, 05, B7, 23, 0E, 00, 8B, DA, 48, 8B, F9, 48, 89, 01, E8, C2, 3A, FF, FF, F6, C3, 01, 74, 08, 48, 8B, CF, E8, 15, 31, FF, FF, 48, 8B, C7, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, C3, CC, CC, CC, CC, CC, CC, CC, 48, 83, EC, 28, 48, 8B, 01, 8B, 08, 81, F9, 4D, 4F, 43, E0, 74...
 
[+]

Entropy:
6.0271

Code size:
5 MB (5,291,008 bytes)

Service
Display name:
EracentEPAService

Description:
Eracent End Point Analyzer

Type:
Win32OwnProcess

Depends on:
RPCSS


Scan EracentEPAService.exe - Powered by Reason Core Security