Pea.exe

Netwrix Auditor

Netwrix Corporation

It runs as a scheduled task under the Windows Task Scheduler.
Publisher:
Netwrix Corporation  (signed and verified)

Product:
Netwrix Auditor

Description:
Netwrix.PEA.Collector

Version:
7.1.322.0

MD5:
1b4e6100b3b85351d10038ba939af955

SHA-1:
e7b837d4fcc8c8e644098dcc1ce33508469d7546

SHA-256:
5f92b53a71bad6f216ff5c7b15f948edcf8c8e1ba76abbb93d48c2a43f47ecf2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 8:31:35 AM UTC  (today)

File size:
119.1 KB (122,008 bytes)

Product version:
7.1.322.0

Copyright:
Copyright © 2015 Netwrix Corporation

Trademarks:
Netwrix is a trademark of Netwrix Corporation

Original file name:
Pea.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\netwrix auditor\password expiration alerting\pea.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/6/2013 8:56:05 AM

Valid to:
8/2/2016 12:52:53 PM

Subject:
E=trust@netwrix.com, CN=Netwrix Corporation, O=Netwrix Corporation, L=Irvine, S=California, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11215579470E4CD561AD0AB7824556FA6182

File PE Metadata
Compilation timestamp:
10/30/2015 1:04:25 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:RC98c2gGHFKIqruzm2AxZta0n5kijDUG9Dr5mzM0mPR:LHAruFQPn5kijXrP0E

Entry address:
0x1D9FA

Entry point:
FF, 25, 00, 20, 40, 00, 00, D0, 01, 00, 0C, 00, 00, 00, FC, 39, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.3528

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
110.5 KB (113,152 bytes)

Scheduled Task
Task name:
Netwrix Auditor - {33049cf6-6925-d7bd-ab7e-9cf82eed22e0} - {0885f70b-1f35-405d-a602-34e29e2aa8ad}

Description:
Starts Netwrix Auditor data collection on Password Expiration Alerting for 'test.local'


Scan Pea.exe - Powered by Reason Core Security