bncsaui.exe

Bradford Networks Persistent Agent

Bradford Networks

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘bncsaui.exe’.
Publisher:
Bradford Networks  (signed and verified)

Product:
Bradford Networks Persistent Agent

Description:
Persistent Agent UI

Version:
4.1.4.4

MD5:
a2619fbfaa45faa10d0070a38eb6eb16

SHA-1:
fea4008aff2c6db2277b62a318dfa6190ef02198

SHA-256:
a76a731049e491c149c5576197cd23b7fb10bb4479f73466f01e910d4e40712f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 7:42:43 AM UTC  (today)

File size:
7.9 MB (8,231,512 bytes)

Product version:
4.1.4.4

Copyright:
© Bradford Networks. All rights reserved.

Original file name:
bncsaui.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\bradford networks\persistent agent\bncsaui.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
10/19/2016 8:00:00 PM

Valid to:
10/20/2019 7:59:59 PM

Subject:
CN=Bradford Networks, OU=Operations, O=Bradford Networks, STREET=162 Pembroke Road, L=Concord, S=New Hampshire, PostalCode=03301, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
79E5C852BA6AFA38CF410955D43FCA1E

File PE Metadata
Compilation timestamp:
1/26/2017 3:36:22 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x4B7F92

Entry point:
E8, 75, 2B, 01, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 83, EC, 10, 56, 8B, 75, 08, 57, 33, FF, 3B, F7, 89, 7D, FC, 75, 1E, E8, ED, 1A, 00, 00, 6A, 16, 5E, 57, 57, 57, 57, 57, 89, 30, E8, 1E, F9, FF, FF, 83, C4, 14, 8B, C6, E9, 06, 02, 00, 00, 6A, 24, 68, FF, 00, 00, 00, 56, E8, 25, F5, FF, FF, 8B, 45, 0C, 83, C4, 0C, 3B, C7, 74, CB, 8B, 08, 8B, 40, 04, 3B, C7, 89, 4D, F0, 89, 45, F4, 7F, 12, 7C, 04, 3B, CF, 73, 0C, E8, A3, 1A, 00, 00, 6A, 16, 5E, 89, 30, EB, C1, 83, F8, 07, 7C, 0A, 7F, A3, 81, F9, FF, 6F, 40...
 
[+]

Entropy:
6.6092

Code size:
5.2 MB (5,419,008 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
bncsaui.exe

Command:
C:\Program Files\bradford networks\persistent agent\bncsaui.exe


Scan bncsaui.exe - Powered by Reason Core Security