workspaceclient.exe

Kerio Workspace

Kerio Technologies, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Kerio Workspace Client’.
Publisher:
Kerio Technologies Inc.  (signed by Kerio Technologies, Inc.)

Product:
Kerio Workspace

Description:
Kerio Workspace: Kerio Workspace Client

Version:
2.1.4.2305 T0

MD5:
432d68395011d45080b3bc4751f8d28d

SHA-1:
0079f32c924a528f301a748fc2dfb61caddbb0e4

SHA-256:
c16c477f628f7fa9772b72eb6500aa76eaef2c5574ad04e4bb68278ffb4ac18a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 8:18:35 AM UTC  (today)

File size:
3.3 MB (3,451,192 bytes)

Product version:
2.1.4.2305 T0

Copyright:
© Kerio Technologies s.r.o. All rights reserved.

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\kerio\workspace client\workspaceclient.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/13/2014 1:00:00 AM

Valid to:
4/14/2017 1:59:59 AM

Subject:
CN="Kerio Technologies, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Kerio Technologies, Inc.", L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
40E22A624332EDCAC62CCCA4C9962982

File PE Metadata
Compilation timestamp:
3/26/2014 2:20:45 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:CSr6YjCYbzdcrLlZmYBEIg9qasikriV4fsAxySasikriCy5mM3EoS5x5PUS1jLz/:p7jnbzdcXlZmFavriVCPvrixEoS5xN

Entry address:
0x14EFE0

Entry point:
E8, 9E, 06, 00, 00, E9, 63, FD, FF, FF, FF, 25, D4, B5, 57, 00, FF, 25, D8, B5, 57, 00, FF, 25, 7C, B6, 57, 00, CC, 6A, 10, 68, B0, 5A, 6E, 00, E8, D7, 03, 00, 00, 33, C0, 89, 45, E0, 89, 45, FC, 89, 45, E4, 8B, 45, E4, 3B, 45, 10, 7D, 13, 8B, 75, 08, 8B, CE, FF, 55, 14, 03, 75, 0C, 89, 75, 08, FF, 45, E4, EB, E5, C7, 45, E0, 01, 00, 00, 00, C7, 45, FC, FE, FF, FF, FF, E8, 08, 00, 00, 00, E8, DE, 03, 00, 00, C2, 14, 00, 83, 7D, E0, 00, 75, 11, FF, 75, 18, FF, 75, E4, FF, 75, 0C, FF, 75, 08, E8, 89, FA, FF...
 
[+]

Code size:
1.5 MB (1,548,288 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Kerio Workspace Client

Command:
C:\Program Files\kerio\workspace client\workspaceclient.exe


Scan workspaceclient.exe - Powered by Reason Core Security