WSA.exe

Netwrix Auditor

Netwrix Corporation

It runs as a scheduled task under the Windows Task Scheduler.
Publisher:
Netwrix Corporation  (signed and verified)

Product:
Netwrix Auditor

Description:
Netwrix Windows Server Change Reporter

Version:
7.1.322.0

MD5:
4d933ffcdbe2828c2b7b42a44e2e5134

SHA-1:
9bc47bcf784212fe9583d84d11643b83b66d68e1

SHA-256:
7fe58e7eb55b16cf640c14e4aa48588a4bb791bd624fb44be1eff8b1de7cffeb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 3:56:41 AM UTC  (today)

File size:
31.1 KB (31,896 bytes)

Product version:
7.1.322.0

Copyright:
Copyright © 2015 Netwrix Corporation

Trademarks:
Netwrix is a trademark of Netwrix Corporation

Original file name:
WSA.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\netwrix auditor\windows server auditing\wsa.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/6/2013 10:56:05 AM

Valid to:
8/2/2016 2:52:53 PM

Subject:
E=trust@netwrix.com, CN=Netwrix Corporation, O=Netwrix Corporation, L=Irvine, S=California, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11215579470E4CD561AD0AB7824556FA6182

File PE Metadata
Compilation timestamp:
10/30/2015 3:05:33 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:aNOIjGVgN1CoDGd3QdTYp6tkdYkl5TrZ7Y6LUHJUzMwWspNHf3aNBjfkS5QVTeUk:Wb8QdS2IYklp2B07dfqLQteCn2e6EhFW

Entry address:
0x7982

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 70...
 
[+]

Entropy:
6.4097

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
22.5 KB (23,040 bytes)

Scheduled Task
Task name:
Netwrix Auditor - {e11241d0-26cf-088a-89eb-26f92fee6a1d} - {1a326b88-1424-4fd3-be95-f08fff279c82}

Description:
Starts Netwrix Auditor data collection on Windows Server for 'New Computer Collection'


Scan WSA.exe - Powered by Reason Core Security