nvda_eoaProxy.exe

  • File Path: C:\Program Files (x86)\NVDA\nvda_eoaProxy.exe
  • Description: NVDA Ease of Access proxy

Hashes

Type Hash
MD5 6BCAA07CF6F0248FEF09FC5EC17CE4C5
SHA1 D746BF1EFC2C871FAC8AC3E61AA08477DC7FC3E6
SHA256 B377792EBA0CF67C8FEFA765712D253AF1EBCE8A353D7DEA63FA4127A60F8B7C
SHA384 894E398403C04B59A74E2B05310636992BB2E60440AAAE544961243B4EF6F1319C52A89613A71D67C83EEBD9DEF8F9BE
SHA512 2D43939ECD96A4B6A0F7ED8FF991433EE456D99E96CA43C1A878D14DD44786BEB82D0A1B7CE7238F5A720355BEF0F263D5A1415151276713649A77A2C05FCBEB
SSDEEP 768:6XpnZuWg7YM6BuEBJdLzX/b8xKTVIthmZ5XU9dzrKwBECZNRKeVNsCDGz9hGd:Opnbg3WNzDBTmcZ29hrKkEC/RKeVNYG
IMP 2A9DF92EE15731BBE6E6DF974A9E6E00
PESHA1 09F94D048A4376112EEEF935881531AAAB862F72
PE256 80CB4320F56D25B18991D244385CD1616FF6C61044A6710F1932B1A3FC5CF9A4

Runtime Data

Open Handles:

Path Type
(R-D) C:\Windows\System32\en-US\kernel32.dll.mui File
(R-D) C:\Windows\System32\en-US\KernelBase.dll.mui File
(RW-) C:\Users\user File
(RW-) C:\Windows File
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000002.db Section
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db Section
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2 Section
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 Section
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 Section

Loaded Modules:

Path
C:\Program Files (x86)\NVDA\nvda_eoaProxy.exe
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\wow64.dll
C:\Windows\System32\wow64cpu.dll
C:\Windows\System32\wow64win.dll

Signature

  • Status: Signature verified.
  • Serial: 01F88F85EC0E5501C9810C1D40F77C21
  • Thumbprint: B1CFD0C99D00FC4B8FBCAA1BA24FA48F6770C461
  • Issuer: CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US
  • Subject: E=sysadmin@nvaccess.org, CN=NV Access Limited, O=NV Access Limited, L=Camp Mountain, S=Queensland, C=AU

File Metadata

  • Original Filename: nvda_eoaProxy.exe
  • Product Name: NVDA
  • Company Name: NV Access
  • File Version: 2021.2.0.23747
  • Product Version: 2021.2
  • Language: English (United States)
  • Legal Copyright: Copyright (C) 2006-2021 NVDA Contributors
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/b377792eba0cf67c8fefa765712d253af1ebce8a353d7dea63fa4127a60f8b7c/detection

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\NVDA\nvda.exe 43
C:\Program Files (x86)\NVDA\nvda.exe 68
C:\Program Files (x86)\NVDA\nvda_dmp.exe 50
C:\Program Files (x86)\NVDA\nvda_eoaProxy.exe 55
C:\Program Files (x86)\NVDA\nvda_noUIAccess.exe 41
C:\Program Files (x86)\NVDA\nvda_noUIAccess.exe 68
C:\Program Files (x86)\NVDA\nvda_slave.exe 49
C:\Program Files (x86)\NVDA\nvda_slave.exe 80
C:\Program Files (x86)\NVDA\nvda_uiAccess.exe 43
C:\Program Files (x86)\NVDA\nvda_uiAccess.exe 68

MIT License. Copyright (c) 2020-2021 Strontic.