haspsrvn.exe

Comarch OPT!MA

COMARCH S.A.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Monitor Serwisu klucza HASP’.
Publisher:
COMARCH S.A.  (signed and verified)

Product:
Comarch OPT!MA

Description:
Modu³ programu Comarch OPT!MA

Version:
2012.4.1.1916

MD5:
b38222fba4dbe9ed91faad0045915e21

SHA-1:
7895f4fc11f70f18d7b0fe083bff901233a058d8

SHA-256:
6cf8b2b82f518c3f53e32bae98f53550fb45378e41b80c44f7afc052f5e7bf13

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 6:15:39 PM UTC  (today)

File size:
100.8 KB (103,184 bytes)

Product version:
2012.4

Copyright:
Copyright © ComArch S.A. 2001-2012

File type:
Executable application (Win32 EXE)

Language:
Polish (Poland)

Common path:
C:\Windows\System32\haspsrvn.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
9/30/2010 2:00:00 AM

Valid to:
12/6/2012 12:59:59 AM

Subject:
CN=COMARCH S.A., O=COMARCH S.A., L=Krakow, S=malopolskie, C=PL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
3073A230D12C2D5AFD7530C1867CBD96

File PE Metadata
Compilation timestamp:
3/14/2012 12:18:40 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
768:gkKMbSOYhCeIodMpPuhZ1JOPosCeGTbGfj3zCwgg27fS721lwcsLD/reSoo73D8+:yROYEoKWpeGT+32ta2ls//LooLDIep

Entry address:
0x5AAD

Entry point:
55, 8B, EC, 6A, FF, 68, 30, E4, 40, 00, 68, B0, 94, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 90, E0, 40, 00, 33, D2, 8A, D4, 89, 15, D4, 48, 41, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, D0, 48, 41, 00, C1, E1, 08, 03, CA, 89, 0D, CC, 48, 41, 00, C1, E8, 10, A3, C8, 48, 41, 00, 6A, 01, E8, 3F, 39, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, 6F, 2E, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
52 KB (53,248 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Monitor Serwisu klucza HASP

Command:
C:\Windows\System32\haspsrvn.exe


Scan haspsrvn.exe - Powered by Reason Core Security