CoreServer.exe

CoreServer

Shanghai Hintsoft Co., Ltd

It runs as a windows Service named “CoreServer”.
Publisher:
HintSoft  (signed by Shanghai Hintsoft Co., Ltd)

Product:
CoreServer

Version:
2.4.0.21

MD5:
b3ddb39e7d17d73289a6a5a56d57b0b8

SHA-1:
c3995364ad4c30f5f72220f58a50821a74a0e613

SHA-256:
edf7c152e10112f21bf4efd7fb689110e59141c510b92957a868e1bd11662f5c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 7:37:27 PM UTC  (today)

File size:
6.4 MB (6,742,808 bytes)

Product version:
2, 0, 0, 0

Copyright:
Copyright HintSoft 2009

Original file name:
CoreServer.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\Program Files\gacapeserver\bin\coreserver.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/3/2013 8:03:40 AM

Valid to:
9/3/2016 8:03:40 AM

Subject:
CN="Shanghai Hintsoft Co., Ltd", O="Shanghai Hintsoft Co., Ltd", L=上海, S=上海, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121BA33F49A45FD5819F71D5E36B0F9BD45

File PE Metadata
Compilation timestamp:
8/13/2015 4:23:48 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
98304:ZRaHhTyLGg30bg2PPa2me8KhVT54YN6lEiXtz9YPd:faH1yL130beKLOoPd

Entry address:
0x38B6D8

Entry point:
E8, 1D, 04, 00, 00, E9, 6C, FD, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 68, 80, A2, 00, 89, 0D, 64, 80, A2, 00, 89, 15, 60, 80, A2, 00, 89, 1D, 5C, 80, A2, 00, 89, 35, 58, 80, A2, 00, 89, 3D, 54, 80, A2, 00, 66, 8C, 15, 80, 80, A2, 00, 66, 8C, 0D, 74, 80, A2, 00, 66, 8C, 1D, 50, 80, A2, 00, 66, 8C, 05, 4C, 80, A2, 00, 66, 8C, 25, 48, 80, A2, 00, 66, 8C, 2D, 44, 80, A2, 00, 9C, 8F, 05, 78, 80, A2, 00, 8B, 45, 00, A3, 6C, 80, A2, 00, 8B, 45, 04, A3, 70, 80, A2, 00, 8D, 45, 08, A3, 7C, 80, A2...
 
[+]

Code size:
5.1 MB (5,300,224 bytes)

Service
Display name:
CoreServer

Description:
Communication Service

Type:
Win32OwnProcess, InteractiveProcess


Scan CoreServer.exe - Powered by Reason Core Security