KASS.EXE

Sassafras K2

Sassafras Software Inc.

It runs as a scheduled task under the Windows Task Scheduler triggered to execute each time a user logs in.
Publisher:
Sassafras Software Inc.  (signed and verified)

Product:
Sassafras K2

Description:
KeyAccess Messager for Windows (32-bit)

Version:
7.4.0.6

MD5:
a320228376e6b124ba30d2bfe1cec650

SHA-1:
9a13a069378737e20e415e349b856c67416d2cfa

SHA-256:
014a235914b975bf38405415f27bd2faa55ec7a4186027a6ac7d53178531c1c2

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/30/2024 12:54:02 PM UTC  (today)

Scan engine
Detection
Engine version

Zillya! Antivirus
Dropper.AgentCRTD.Win32.8603
2.0.0.3192

File size:
204.8 KB (209,720 bytes)

Product version:
7.4

Copyright:
(c)1990-2016 Sassafras Software Inc.

Trademarks:
Sassafras, KeyServer, and KeyAccess are registered trademarks of Sassafras Software Inc.

Original file name:
KASS.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\windows\kass.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
11/17/2015 5:30:00 AM

Valid to:
11/18/2017 5:29:59 AM

Subject:
CN=Sassafras Software Inc., OU=Secure Application Development, O=Sassafras Software Inc., L=Hanover, S=New Hampshire, C=US

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
0C16910318A849F138153A563528430E

File PE Metadata
Compilation timestamp:
12/8/2016 5:51:01 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0x254B0

Entry point:
55, 8B, EC, 51, 56, 57, 8B, 3D, 40, 81, 42, 00, 8D, 45, FC, 50, FF, D7, 50, FF, 15, 84, 81, 42, 00, 8B, F0, 85, F6, 74, 3E, 83, 7D, FC, 01, 7E, 38, 6A, FF, 68, B8, D7, 42, 00, 6A, FF, FF, 76, 04, 6A, 00, 6A, 00, FF, 15, 4C, 80, 42, 00, 83, F8, 02, 75, 1D, FF, D7, 8B, C8, E8, F7, 17, 00, 00, 8B, 4D, FC, 8D, 56, 08, 50, 8D, 49, FE, E8, 48, 0E, 00, 00, 83, C4, 04, EB, 2E, 8B, 3D, EC, 80, 42, 00, 68, 10, 27, 00, 00, 6A, F5, FF, D7, 6A, F6, 8B, F0, FF, D7, 8B, D6, 8B, C8, E8, A5, 00, 00, 00, 83, C4, 04, 85, C0...
 
[+]

Entropy:
6.7619

Developed / compiled with:
Microsoft Visual C++

Code size:
153.5 KB (157,184 bytes)

Scheduled Task
Task name:
KeyAccess User Agent Task

Path:
\Sassafras\KeyAccess User Agent Task

Trigger:
Logon (Runs on logon)


Scan KASS.EXE - Powered by Reason Core Security