schedhlp.exe

Acronis Scheduler Helper

Acronis, Inc

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Servicio de Acronis Scheduler2’.
Publisher:
Acronis  (signed by Acronis, Inc)

Product:
Acronis Scheduler Helper

Version:
1,0,0,335

MD5:
cc3830d1a877d16907a1f809cf0d695a

SHA-1:
d83c1c793bf6b6d6907c21f6aee3d3bb47f010c5

SHA-256:
0b56233ea80a9ffdb269c4f44795c891f64db552ff2dbeca215297f097caca6d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 5:46:20 PM UTC  (today)

File size:
349.3 KB (357,688 bytes)

Product version:
1,0,0,335

Copyright:
Copyright (C) 2000-2004 Acronis

Trademarks:
Acronis

Original file name:
schedhlp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\common files\acronis\schedule2\schedhlp.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/21/2008 7:00:00 PM

Valid to:
9/25/2009 6:59:59 PM

Subject:
CN="Acronis, Inc", OU=Headquarter, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Acronis, Inc", L=South San Francisco, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
38EEF5B297D05B3ACD7CC3CCC1FDF661

File PE Metadata
Compilation timestamp:
7/22/2009 2:12:44 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x80E8

Entry point:
E8, C8, 39, 00, 00, E9, 40, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 83, EC, 14, 53, 8B, 5C, 24, 20, 55, 56, 8B, 73, 08, 33, 35, 04, C2, 44, 00, 57, 8B, 06, 83, F8, FE, C6, 44, 24, 13, 00, C7, 44, 24, 18, 01, 00, 00, 00, 8D, 7B, 10, 74, 0D, 8B, 4E, 04, 03, CF, 33, 0C, 38, E8, A6, 08, 00, 00, 8B, 4E, 0C, 8B, 46, 08, 03, CF, 33, 0C, 38, E8, 96, 08, 00, 00, 8B, 44, 24, 28, F6, 40, 04, 66, 0F, 85, 1F, 01, 00, 00, 8B, 6B, 0C, 83, FD, FE, 8B, 4C, 24, 30, 8D, 54, 24, 1C, 89, 44, 24, 1C...
 
[+]

Entropy:
6.4634

Code size:
240 KB (245,760 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Servicio de Acronis Scheduler2

Command:
"C:\Program Files\common files\acronis\schedule2\schedhlp.exe"