esdprs.exe

ElcomSoft Distributed Password Recovery

ElcomSoft Co.Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘ElcomSoft DPR Server’.
Publisher:
ElcomSoft Co. Ltd.  (signed by ElcomSoft Co.Ltd.)

Product:
ElcomSoft Distributed Password Recovery

Description:
ElcomSoft Distributed Password Recovery Server

Version:
1.6.77

MD5:
bf30ae5c92177f266e250d32809826d1

SHA-1:
5a297050cce9d6465e9bfcb79a6be1ef0438565d

SHA-256:
371ff45bbad09b5daf7b8f1a43e061a63007fbb1d6267f54cd1083312302cc47

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 5:35:30 AM UTC  (today)

File size:
296 KB (303,128 bytes)

Product version:
1.6.77

Copyright:
Copyright (C) 2002-2007 ElcomSoft Co. Ltd.

Trademarks:
ElcomSoft is a registered trademark of ElcomSoft Co. Ltd.

Original file name:
esdprs.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\elcomsoft\distributed password recovery\esdprs.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/18/2006 12:00:00 PM

Valid to:
9/25/2009 11:59:59 AM

Subject:
CN=ElcomSoft Co.Ltd., OU=Development, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=ElcomSoft Co.Ltd., L=Moscow, S=Moscow, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
76C04D7ECFE63D62BBE057B5375481F5

File PE Metadata
Compilation timestamp:
4/14/2007 12:16:51 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x1000

Entry point:
68, 01, B0, C7, 01, E8, 01, 00, 00, 00, C3, C3, A3, 7D, DA, 23, 7D, FC, 75, 9C, 22, 5C, C8, 71, 9D, 8B, A1, C8, 27, 3C, 09, 80, F1, 27, D9, 5B, 7D, E1, 17, 4E, A8, 2A, 6B, 76, F5, BA, 71, B6, 59, 2C, 47, EE, D6, 94, E9, E5, F4, 85, 81, B9, C1, 58, 1D, 1C, 4D, 9B, F4, 59, EC, DD, E0, DF, 5D, 4F, E4, 41, 71, 94, A5, 61, 05, 61, CF, 34, 8D, 4B, 95, B4, F3, 7F, C2, 2E, 49, D0, D0, FF, 34, 63, A1, DD, 8A, 16, 34, 77, F1, 9E, 0B, EF, 4B, 45, CE, 0B, 52, 0E, D5, 24, 83, ED, DB, 5F, D2, E8, A1, 96, C4, 64, 4A, BE...
 
[+]

Entropy:
7.7768

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
188 KB (192,512 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ElcomSoft DPR Server

Command:
C:\Program Files\elcomsoft\distributed password recovery\esdprs.exe


Scan esdprs.exe - Powered by Reason Core Security