exeforservice.exe

Symantec Workspace Streaming Agent

Symantec Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘AppMgrGui’. This is installed with Symantec Workspace Streaming Agent.
Publisher:
Symantec Corporation  (signed and verified)

Product:
Symantec Workspace Streaming Agent

Description:
Streamed Application Launcher

Version:
6,4,0,573

MD5:
21fc79c3f283f20e0231126114a6c587

SHA-1:
0874437c7f97448433124fdf66cb04eb06f92ebf

SHA-256:
dab55a95ac3fb3a8c67283705de000652704e94e89314ec8e788741bd5b9e7ab

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 11:59:28 AM UTC  (today)

File size:
52.4 KB (53,696 bytes)

Product version:
6,4,0,573

Copyright:
Copyright 2011, Symantec Corporation

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\symantec\workspace streaming\bin\exeforservice.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/3/2011 1:00:00 AM

Valid to:
10/21/2014 12:59:59 AM

Subject:
CN=Symantec Corporation, OU=Symantec Endpoint Virtualization, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Symantec Corporation, L=Mountain View, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5385D735F46EC5BD781A47590F1D7AA2

File PE Metadata
Compilation timestamp:
2/29/2012 7:36:37 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
768:OO5A064XkJbEduboW4Gvjm445fUoV4LOXiH94LOXiHgLFmc:OO5V64ygdq/Nmf4LOXzLOX9oc

Entry address:
0x424F

Entry point:
E8, E4, 03, 00, 00, E9, 36, FD, FF, FF, CC, FF, 25, 10, 52, 40, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 58, 91, 40, 00, 89, 0D, 54, 91, 40, 00, 89, 15, 50, 91, 40, 00, 89, 1D, 4C, 91, 40, 00, 89, 35, 48, 91, 40, 00, 89, 3D, 44, 91, 40, 00, 66, 8C, 15, 70, 91, 40, 00, 66, 8C, 0D, 64, 91, 40, 00, 66, 8C, 1D, 40, 91, 40, 00, 66, 8C, 05, 3C, 91, 40, 00, 66, 8C, 25, 38, 91, 40, 00, 66, 8C, 2D, 34, 91, 40, 00, 9C, 8F, 05, 68, 91, 40, 00, 8B, 45, 00, A3, 5C, 91, 40, 00, 8B, 45, 04, A3, 60, 91, 40, 00...
 
[+]

Entropy:
6.2881

Code size:
16 KB (16,384 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AppMgrGui

Command:
C:\Program Files\symantec\workspace streaming\bin\exeforservice.exe


The file exeforservice.exe has been discovered within the following program.

Symantec Workspace Streaming Agent  by Symantec Corporation
www.Symantec.com
11% remove it
 
Powered by Should I Remove It?