capserver_c.exe

capture Win32 server

Xi'an Saming Technology Co., Ltd.

Publisher:
Xi'an Saming Technology Co., Ltd.  (signed and verified)

Product:
capture Win32 server

Description:
远程控制

Version:
1, 0, 1, 1

MD5:
55d21bb1885b35c88fc700bb120c6412

SHA-1:
517b75ac6c64d4a29dc19bddd5a3f4f7353658e1

SHA-256:
fd3bfca74c5e9389d0ba82808da831e1f3733816eed3ead705d703ae8c49ad94

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 11:18:16 PM UTC  (a few moments ago)

File size:
332 KB (340,000 bytes)

Product version:
1, 0, 1, 1

Original file name:
capserver.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\lenovo\edu\server\capserver_c.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/7/2007 8:00:00 AM

Valid to:
12/7/2010 7:59:59 AM

Subject:
CN="Xi'an Saming Technology Co., Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Xi'an Saming Technology Co., Ltd.", L=Xi'an, S=ShanXi, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2D96DFEFFB9054622018ADC22F170388

File PE Metadata
Compilation timestamp:
7/26/2010 3:06:38 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:c4Z7R6f2lNvR+noRDfq/KAZSuR0kAoGQ0DroN/rCK5mGHV:kny9kL0DroJx1

Entry address:
0x266D6

Entry point:
E8, 46, 6E, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, 3D, 34, B1, 43, 00, 00, 74, 15, 68, 34, B1, 43, 00, E8, C8, 60, 00, 00, 59, 85, C0, 74, 06, FF, 15, 34, B1, 43, 00, E8, 44, 14, 00, 00, 85, C0, 74, 07, 50, E8, FC, 15, 00, 00, 59, FF, 75, 08, FF, 15, 88, 71, 43, 00, CC, 6A, 0C, 68, 50, DF, 43, 00, E8, 1F, 48, 00, 00, E8, 97, 14, 00, 00, 83, 65, FC, 00, FF, 70, 58, FF, 50, 54, 50, E8, A2, FF, FF, FF, 8B, 45, EC, 8B, 08, 8B, 09, 89, 4D, E4, 50, 51, E8, 2E, 61, 00, 00, 59, 59, C3, 8B, 65, E8, FF...
 
[+]

Entropy:
6.6542

Code size:
215.5 KB (220,672 bytes)

Windows Firewall Allowed Program
Name:
C:\Program Files\Lenovo\EDU\Server\capserver_c.exe


Scan capserver_c.exe - Powered by Reason Core Security