@kefagent.exe

Capital Agent

Altec Software S.A.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘CapitalAgent’.
Publisher:
Altec Software S.A.  (signed and verified)

Product:
Capital Agent

Version:
1.0.2.30

MD5:
52e1b3c3a2341425c07086a21c5926fb

SHA-1:
af8fa0043c0a3c8627b86ddec36f8177257206a5

SHA-256:
af4e3084121271246b62cd97d5e94da63b54786b8986f29aed44c32cfeb05656

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 7:42:46 AM UTC  (today)

File size:
444.9 KB (455,536 bytes)

Product version:
1.0.2.0

Copyright:
Altec Software S.A 2011-2012

Original file name:
KEFAGENT.EXE

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/10/2012 3:00:00 AM

Valid to:
5/25/2013 2:59:59 AM

Subject:
CN=Altec Software S.A., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Altec Software S.A., L=Athens, S=Maroussi, C=GR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2B6BFC8972ECD4B16C08A23DA473D41A

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x1000

Entry point:
B8, 08, BC, 59, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, CE, 1E, 42, AF, F8, D6, CC, E9, FB, C8, 4F, 1B, 22, 7C, B4, C8, 0D, BD, 71, A9, C8, 1F, 5F, B1, 29, 8F, 11, 73, 8F, 00, D1, 88, 87, A9, 3F, 4D, 00, 6C, 3C, BF, C0, 80, F7, AD, 35, 23, EB, 84, 82, 6F, 8C, B9, 0A, FC, EC, E4, 82, 97, AE, 0F, 18, D2, 47, 1B, 65, EA, 46, A5, FD, 3E, 9D, 75, 2A, 62, 80, 60, F9, B0, 0D, E1, AC, 12, 0E, 9D, 24, D5, 43, CE, 9A, D6, 18, BF, 22...
 
[+]

Packer / compiler:
ExeShield v3.7

Code size:
1.1 MB (1,189,376 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
CapitalAgent

Command:
C:\kef5\@kefagent.exe


Scan @kefagent.exe - Powered by Reason Core Security