PGCaptureConfig.exe

Avecto Defendpoint

Avecto

Publisher:
Avecto Ltd.  (signed by Avecto)

Product:
Avecto Defendpoint

Description:
Avecto Config Capture Utility

Version:
4.1.262.0

MD5:
a64e90ec413d47b7abfd78992cee2656

SHA-1:
d9dc4a415ca2579c2873c6c09808157739b3a1fa

SHA-256:
08a83a0f0c308d46ee48401374a732b1e9133b79c64e0680f7972b2089fc1dd3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/7/2024 7:01:54 AM UTC  (today)

File size:
2.7 MB (2,808,312 bytes)

Product version:
4.1.262.0

Copyright:
Copyright © 2008-2016 Avecto Ltd. All rights reserved.

Original file name:
PGCaptureConfig.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\avecto\privilege guard client\pgcaptureconfig.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/7/2015 5:30:00 AM

Valid to:
10/5/2016 5:29:59 AM

Subject:
CN=Avecto, O=Avecto, L=Cheadle, S=Cheshire, C=GB

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
011D1232F114C9039E93ABE138756557

File PE Metadata
Compilation timestamp:
7/27/2016 7:50:58 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
49152:ZCikBLNEomjtxcwO/BJ3cOr2HKcOdC2fEXDlfhIKa/KBkWHGoLbZ97XfITqAXyaF:YdBLNEomjEwO5J1SHKcOsXXDlfhIKa/Z

Entry address:
0x12DEFB

Entry point:
E8, CB, 93, 00, 00, E9, 7F, FE, FF, FF, 3B, 0D, B0, A2, 67, 00, 75, 02, F3, C3, E9, 56, 58, 00, 00, 56, 6A, 04, 6A, 20, E8, 2F, 99, 00, 00, 59, 59, 8B, F0, 56, FF, 15, 58, E3, 5E, 00, A3, F0, 8E, 68, 00, A3, EC, 8E, 68, 00, 85, F6, 75, 05, 6A, 18, 58, 5E, C3, 83, 26, 00, 33, C0, 5E, C3, 6A, 0C, 68, 70, 34, 67, 00, E8, C1, 3A, 00, 00, 83, 65, E4, 00, E8, 78, 38, 00, 00, 83, 65, FC, 00, FF, 75, 08, E8, 23, 00, 00, 00, 59, 8B, F0, 89, 75, E4, C7, 45, FC, FE, FF, FF, FF, E8, 0B, 00, 00, 00, 8B, C6, E8, D8, 3A...
 
[+]

Entropy:
6.6391

Code size:
1.9 MB (2,018,304 bytes)

Scan PGCaptureConfig.exe - Powered by Reason Core Security