Agenda.exe

Agenda Permanente

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘AGENDA’.
Publisher:
Agenda Software  (signed by Agenda Permanente)

Product:
Agenda Software

Description:
Agenda

Version:
9.3.2.2

MD5:
ddec0bcabc3abb4e82e0920485a6ef14

SHA-1:
03cc8c4874f54583594bb1698d75ee8d94cc1b07

SHA-256:
1922584a0f80f819ed65b200930c18633e26ddb9f69fbc6d855f995889a28120

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 7:35:34 AM UTC  (today)

File size:
13.2 MB (13,862,248 bytes)

Product version:
8.0.0.0

Copyright:
Agenda Software

Original file name:
Agenda.exe

File type:
Executable application (Win32 EXE)

Language:
Brazilian Portuguese

Digital Signature
Authority:
Agenda Permanente

Valid from:
12/6/2015 1:16:15 PM

Valid to:
12/5/2016 1:16:15 PM

Subject:
E=agenda@agenda.eti.br, CN=Carlos Alberto Phelippe, OU=Agenda Permanente, O=Agenda Permanente, L=Bigua‡u, S=SC, C=BR

Issuer:
E=agenda@agenda.eti.br, CN=Carlos Alberto Phelippe, OU=Agenda Permanente, O=Agenda Permanente, L=Bigua‡u, S=SC, C=BR

Serial number:
0096FC83734279B125

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:R5jGYRvYTWHCqKpwAirsFJgdrUUChtCPR3q5/jW:fLvYTmKpnirsFJgaEP056

Entry address:
0x6D0FEC

Entry point:
55, 8B, EC, B9, 04, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, 56, 57, B8, 2C, F8, AC, 00, E8, 2B, 69, 93, FF, 33, C0, 55, 68, 33, 13, AD, 00, 64, FF, 30, 64, 89, 20, A1, 24, DD, AD, 00, 8B, 00, E8, A5, 26, 9D, FF, 6A, 00, 68, 44, 13, AD, 00, E8, 9D, 79, 93, FF, 8B, D8, 85, DB, 0F, 85, AE, 02, 00, 00, 68, 54, 13, AD, 00, 6A, 1F, 6A, 00, E8, 1D, 73, 93, FF, 6A, 00, 6A, 00, 6A, 1A, A1, 24, DD, AD, 00, 8B, 00, 8B, 40, 30, 50, E8, 17, 7D, 93, FF, A1, 24, DD, AD, 00, 8B, 00, C6, 40, 59, 00, A1, 90, D4, AD...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
6.8 MB (7,144,960 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AGENDA

Command:
"C:\agenda\agenda.exe"


Scan Agenda.exe - Powered by Reason Core Security