bncsaui.exe

Bradford Networks Persistent Agent

Bradford Networks

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘bncsaui.exe’.
Publisher:
Bradford Networks  (signed and verified)

Product:
Bradford Networks Persistent Agent

Description:
Persistent Agent UI

Version:


MD5:
0784df2038bc5e2fde7bf8b010198038

SHA-1:
1cd17967cf6b35a6964edef1f474210e8fa9664a

SHA-256:
01bc73e0f08bf7ea7f5c9bb76056702a36d4728d31f17697969348689259d506

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 7:31:38 AM UTC  (today)

File size:
3.3 MB (3,487,888 bytes)

Product version:


Copyright:
© Bradford Networks. All rights reserved.

Original file name:
bncsaui.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\bradford networks\persistent agent\bncsaui.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
10/13/2011 8:00:00 PM

Valid to:
10/13/2014 7:59:59 PM

Subject:
CN=Bradford Networks, OU=Operations, O=Bradford Networks, STREET=162 Pembroke Road, L=Concord, S=New Hampshire, PostalCode=03301, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008DFB94F9762E61E8F47C55F16175B1B7

File PE Metadata
Compilation timestamp:
10/7/2013 4:13:47 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:4f8W5nvFQwyXAGWzYbY2NLEtiYCz6zd7vafTciunDve:4EWd6hrWzB2C06xnDve

Entry address:
0x188840

Entry point:
E8, 47, E9, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, B8, FF, FF, 00, 00, 83, EC, 14, 66, 39, 45, 08, 0F, 84, 96, 00, 00, 00, 53, FF, 75, 0C, 8D, 4D, EC, E8, A9, F5, FF, FF, 8B, 4D, EC, 8B, 51, 14, 33, DB, 3B, D3, 75, 14, 8B, 45, 08, 8D, 48, BF, 66, 83, F9, 19, 77, 03, 83, C0, 20, 0F, B7, C0, EB, 5D, B8, 00, 01, 00, 00, 66, 39, 45, 08, 73, 29, 8D, 45, EC, 50, 6A, 01, FF, 75, 08, E8, 1D, EC, 00, 00, 83, C4, 0C, 85, C0, 0F, B7, 45, 08, 74, 39, 8B, 4D, EC, 8B, 89, CC, 00, 00, 00, 66, 0F, B6, 04, 01, EB, C7, FF...
 
[+]

Entropy:
6.1023

Code size:
2.1 MB (2,195,456 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
bncsaui.exe

Command:
C:\Program Files\bradford networks\persistent agent\bncsaui.exe


Scan bncsaui.exe - Powered by Reason Core Security