alditalkverbindungsassistent_service.exe

WebToGo GmbH

It runs as a separate (within the context of its own process) windows Service named “ALDI TALK Verbindungsassistent Service”.
Publisher:
WebToGo GmbH  (signed and verified)

MD5:
a729363c064222becc6b88d770286a71

SHA-1:
029d85b3eacf601e914a38d67f993ac2fd9c2756

SHA-256:
6b1541d4278185677c8aecd0de7bd155a0b89ea7c2abdcd5ccc5de7b8de14277

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/5/2025 10:29:32 PM UTC  (today)

File size:
406.7 KB (416,432 bytes)

File type:
Executable application (Win32 EXE)

Language:
engleski (SAD)

Common path:
C:\Program Files\alditalkverbindungsassistent\alditalkverbindungsassistent_service.exe

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
11/2/2016 1:00:00 AM

Valid to:
11/9/2018 12:59:59 AM

Subject:
CN=WebToGo GmbH, OU=APPLICATION DEVELOPMENT, O=WebToGo GmbH, L=Muenchen, S=Bayern, C=DE

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
6602F871F3182C97D73DEC40EA488DEB

File PE Metadata
Compilation timestamp:
11/17/2016 3:31:19 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
6144:DM5CXl0OA5C+YyNIJorRs3SsEWyYZoiOmWUsF3brp1y7cXnzCe1:DDl0OA5xrIJo92UiRsF3fpUEnb1

Entry address:
0x31705

Entry point:
E8, 61, C6, 00, 00, E9, 41, FE, FF, FF, 8B, 44, 24, 04, 66, 8B, 08, 40, 40, 66, 85, C9, 75, F6, 2B, 44, 24, 04, D1, F8, 48, C3, 55, 8B, EC, 51, 53, 8B, 45, 0C, 83, C0, 0C, 89, 45, FC, 64, 8B, 1D, 00, 00, 00, 00, 8B, 03, 64, A3, 00, 00, 00, 00, 8B, 45, 08, 8B, 5D, 0C, 8B, 6D, FC, 8B, 63, FC, FF, E0, 5B, C9, C2, 08, 00, 58, 59, 87, 04, 24, FF, E0, 55, 8B, EC, 51, 51, 53, 56, 57, 64, 8B, 35, 00, 00, 00, 00, 89, 75, FC, C7, 45, F8, 85, 17, 43, 00, 6A, 00, FF, 75, 0C, FF, 75, F8, FF, 75, 08, E8, B9, 68, 01, 00...
 
[+]

Code size:
300 KB (307,200 bytes)

Service
Display name:
ALDI TALK Verbindungsassistent Service

Service name:
ALDITALKVerbindungsassistent_Service

Type:
Win32OwnProcess


Scan alditalkverbindungsassistent_service.exe - Powered by Reason Core Security