eventsentry_svc.exe

EventSentry

NETIKUS.NET ltd

It runs as a separate (within the context of its own process) windows Service named “EventSentry”.
Publisher:
NETIKUS.NET ltd  (signed and verified)

Product:
EventSentry

Description:
EventSentry Agent

Version:
3.2.1.30

MD5:
72540441c24728b76271b112dad8ec63

SHA-1:
96b7a089f04a995ebcef674b503475ee3d439f8a

SHA-256:
15253016d4997e85612130f635b5f4f4a953da1a0165d4e17da979ad876ed2c5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/5/2024 4:19:37 PM UTC  (today)

File size:
5.5 MB (5,759,560 bytes)

Product version:
3.2.1

Copyright:
Copyright (C) 2002 - 2015 NETIKUS.NET ltd

Trademarks:
EventSentry

Original file name:
eventsentry_svc.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\windows\syswow64\eventsentry\eventsentry_svc.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
10/7/2014 3:00:00 AM

Valid to:
10/8/2019 2:59:59 AM

Subject:
CN=NETIKUS.NET ltd, O=NETIKUS.NET ltd, STREET="225 W. Washington St., Ste 2200", L=Chicago, S=Illinois, PostalCode=60606, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
65AF4CF63CEE5971553ACEF195DC796F

File PE Metadata
Compilation timestamp:
4/22/2016 11:25:19 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
12.0

Entry address:
0x3B83D0

Entry point:
E8, 44, 2E, 01, 00, E9, 7B, FE, FF, FF, CC, CC, CC, CC, CC, CC, 51, 8D, 4C, 24, 08, 2B, C8, 83, E1, 0F, 03, C1, 1B, C9, 0B, C1, 59, E9, 8A, 5F, FF, FF, 51, 8D, 4C, 24, 08, 2B, C8, 83, E1, 07, 03, C1, 1B, C9, 0B, C1, 59, E9, 74, 5F, FF, FF, 55, 8B, EC, 8B, 45, 08, 85, C0, 74, 0C, 83, E0, FC, FF, 70, FC, E8, B5, 6E, FF, FF, 59, 5D, C3, 55, 8B, EC, 6A, 00, FF, 75, 0C, FF, 75, 08, E8, 05, 00, 00, 00, 83, C4, 0C, 5D, C3, 55, 8B, EC, 8B, 4D, 0C, 8D, 41, FF, 85, C1, 74, 14, E8, 95, BF, FF, FF, C7, 00, 16, 00, 00...
 
[+]

Entropy:
6.7867

Code size:
4.2 MB (4,371,456 bytes)

Service
Display name:
EventSentry

Description:
Monitors and consolidates your event logs, log files, services, disk space, performance, files and more.

Type:
Win32OwnProcess


Scan eventsentry_svc.exe - Powered by Reason Core Security