alsvc.exe

SKL Client

Deep Software Inc.

It runs as a separate (within the context of its own process) windows Service named “Salsvc”.
Publisher:
Deep Software Inc.  (signed and verified)

Product:
SKL Client

Version:
4.2.2.665

MD5:
05c2b67ba643a336bd321c59350d0d8f

SHA-1:
aaaf9f86c5fb4c0ed63de03589d91b8172d3b591

SHA-256:
1ebc3d0fc0a8d91c7ae38228e926190b55da7addd865bd29a8f5af2e18adbdc6

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/15/2024 9:13:50 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Malware-gen
160917-0

File size:
772.4 KB (790,952 bytes)

Product version:
4.2.2.665

Copyright:
Copyright © 2000-2011 Deep Software Inc.

File type:
Executable application (Win32 EXE)

Language:
English (Canada)

Common path:
C:\Program Files\softactivity\skl\alsvc.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/21/2010 5:30:00 AM

Valid to:
2/12/2013 5:29:59 AM

Subject:
CN=Deep Software Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Deep Software Inc., L=New Westminster, S=British Columbia, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3D1CB78AFC8D91BE032120FB59844936

File PE Metadata
Compilation timestamp:
1/10/2011 2:52:16 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

Entry address:
0x1000

Entry point:
68, 01, F0, 56, 00, E8, 01, 00, 00, 00, C3, C3, 8F, 2A, AB, 7B, 3A, F3, 90, 52, 94, 9C, D1, 43, F1, CF, 0F, 9B, 5E, 81, 33, E9, 77, 9F, 40, F0, 43, 16, BE, 11, 74, C3, 70, C2, 9A, BA, 90, 09, 12, 7C, CD, 69, 43, 19, 27, CB, 39, 52, DB, 3F, 92, CB, B2, 8B, BF, CF, E3, 99, 9E, D4, 14, FF, 2C, 60, E9, 25, B9, 34, D1, 3D, 9D, 74, 9D, 8C, 1D, C0, C8, 31, 3A, C4, BF, 8C, EC, 45, 08, F3, EE, A7, 67, 1D, 2D, 8E, BD, 86, 55, C5, 6A, 15, 95, 2A, D6, 28, EF, 80, 85, 74, 0E, 50, 1C, D1, E8, EE, 9B, 55, 55, CD, 5B, 33...
 
[+]

Entropy:
7.9732

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
787 KB (805,888 bytes)

Service
Display name:
Salsvc

Description:
SoftActivity KL Client Service

Type:
Win32OwnProcess


Scan alsvc.exe - Powered by Reason Core Security