CredentialService.exe

Dekart Logon

Dekart

It runs as a separate (within the context of its own process) windows Service named “Dekart Credential Service”.
Publisher:
Dekart  (signed and verified)

Product:
Dekart Logon

Description:
Dekart Credential Service

Version:
2.24.0.1

MD5:
f87f03a72a05e801e660ffb9acaa7f8a

SHA-1:
771eb13d7a76fc7a85ce2301cd939ac9e8433fdc

SHA-256:
272c0f6f9d0dd159bdb98e1292766cd0887ece98240b9bf85002df19b7e4a3b1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 3:11:10 AM UTC  (today)

File size:
82.3 KB (84,280 bytes)

Product version:
2.24

Copyright:
Copyright © Dekart

Original file name:
CredentialService.exe

File type:
Executable application (Win32 EXE)

Language:
Russian (Russia)

Common path:
C:\Windows\System32\credentialservice.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
10/9/2007 9:05:49 PM

Valid to:
10/9/2010 9:05:49 PM

Subject:
E=info@dekart.com, CN=Dekart, O=Dekart, C=MD

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
010000000001158515F3C5

File PE Metadata
Compilation timestamp:
11/16/2009 10:29:02 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

Entry address:
0x2D08

Entry point:
E8, D2, 36, 00, 00, E9, A5, FE, FF, FF, 8B, FF, 56, 6A, 01, 68, 24, 20, 41, 00, 8B, F1, E8, A5, 37, 00, 00, C7, 06, 38, E2, 40, 00, 8B, C6, 5E, C3, C7, 01, 38, E2, 40, 00, E9, 0A, 38, 00, 00, 8B, FF, 55, 8B, EC, 56, 8B, F1, C7, 06, 38, E2, 40, 00, E8, F7, 37, 00, 00, F6, 45, 08, 01, 74, 07, 56, E8, 2A, FB, FF, FF, 59, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, 76, 37, 00, 00, C7, 06, 38, E2, 40, 00, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 83, EC, 0C, EB, 0D, FF, 75...
 
[+]

Entropy:
6.3816

Code size:
49 KB (50,176 bytes)

Service
Display name:
Dekart Credential Service

Service name:
CredentialService.exe

Description:
Monitors the keys connected to the system and performs a specified action when a key is removed or connected. If this service is stopped, the key removal behaviour feature of Logon for Windows will

Type:
Win32OwnProcess


Scan CredentialService.exe - Powered by Reason Core Security