exwtrsvc.exe

JNESS Inc.

It runs as a windows Service named “ExwtrSvc”.
Publisher:
JNESS Inc.  (signed and verified)

Version:
1.0.0.102

MD5:
b01e86fc5c841e76c1029f209303ce4c

SHA-1:
8ecb87489d7e5d5d54618c8dedc7eddeb316477e

SHA-256:
ef9a02b1c19e56265833667f97eb6aea3598a3002d18278aeba9e43e7ef9b708

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 11:19:05 PM UTC  (a few moments ago)

File size:
1.3 MB (1,319,424 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Common path:
C:\windows\downloaded Program Files\exwtrsvc.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
10/10/2012 9:00:00 AM

Valid to:
10/11/2014 8:59:59 AM

Subject:
CN=JNESS Inc., O=JNESS Inc., L=Seongdong-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
4D82802065B0D4FC5CBE3631FBE141EE

File PE Metadata
Compilation timestamp:
1/10/2014 1:03:14 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
24576:F0LlWUzYXLDcAPxzBnS/gQQNcwJu/HoGMb52dhI7AL1a:ySjBSF/QEI74a

Entry address:
0x1644

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, AC, 30, 51, 00, A1, 9F, 30, 51, 00, C1, E0, 02, A3, A3, 30, 51, 00, 52, 6A, 00, E8, 07, 02, 11, 00, 8B, D0, E8, B2, EA, 0F, 00, 5A, E8, F0, E9, 0F, 00, E8, 03, EC, 0F, 00, 6A, 00, E8, 10, 08, 10, 00, 59, 68, 48, 30, 51, 00, 6A, 00, E8, E1, 01, 11, 00, A3, A7, 30, 51, 00, 6A, 00, E9, 6F, A3, 10, 00, E9, 42, 08, 10, 00, 33, C0, A0, 91, 30, 51, 00, C3, A1, A7, 30, 51, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, EC, 00, 00, 00, 0B, C9...
 
[+]

Entropy:
6.5418

Code size:
1.1 MB (1,122,304 bytes)

Service
Display name:
ExwtrSvc

Service name:
svcExwtr

Description:
Exwtr

Type:
Win32OwnProcess, InteractiveProcess


Scan exwtrsvc.exe - Powered by Reason Core Security