hcserver.exe

Tandem Systems Ltd.

It runs as a separate (within the context of its own process) windows Service named “WinAgents HyperConf Server 5.4”.
Publisher:
WinAgents Software Group  (signed by Tandem Systems Ltd.)

Description:
HyperConf Server

Version:
5.5.0.657

MD5:
336210e53e42ab2429fd11bf7743ab96

SHA-1:
810631e5b843a1c45246fe593f00e2ff5a7733c1

SHA-256:
385b7ba2c1196ff1293ce0ab49088d108074f6db5e6224c6175fb0479538e5b4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/28/2024 9:02:35 AM UTC  (today)

File size:
1.8 MB (1,903,768 bytes)

Product version:
5.5.0.657

Copyright:
(c) 2015 Tandem Systems, Ltd. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\common files\winagents\hcserver.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/30/2014 1:00:00 AM

Valid to:
7/31/2015 12:59:59 AM

Subject:
CN=Tandem Systems Ltd., OU=WinAgents Software Group, O=Tandem Systems Ltd., STREET="Of 302, 2a, Dachny per.", L=Saransk, S=Mordovia, PostalCode=430011, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00A4BCE9DC8A0FF8E9BF1163BB4FA5A0A5

File PE Metadata
Compilation timestamp:
6/19/1992 11:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:am+RvIouBBz0T62+AQRUdKaLUL6h3u0cMLlXcFQGC:WhIHu6v3ybJ

Entry address:
0x1000

Entry point:
68, 01, 90, 7E, 00, E8, 01, 00, 00, 00, C3, C3, B0, C2, B6, C8, A9, 49, 95, C3, 78, 02, AD, 86, 5D, FD, 63, 8A, A5, 45, F9, 74, C3, 21, F1, 5C, 3D, 2D, D3, 3F, F9, 6F, 20, FB, 42, 8F, 71, 11, E5, B0, BD, D7, FA, 59, B1, 13, AF, 8D, A6, 5A, 7D, 40, B1, 74, 87, 0E, B1, A2, 60, 69, C1, 0D, D3, 71, 3C, 79, 8D, 0D, 45, 40, DB, EC, 91, 84, E5, 7D, 2B, 5C, 28, D9, 05, 34, 37, 2D, 01, EB, F0, 3C, 65, 58, 6F, 5C, 0B, 16, 11, 3B, 1D, E6, 96, D1, 13, C5, 37, 07, 77, 90, D4, 48, 8F, 13, D5, D4, 04, 9F, 4D, 7D, 4C, 18...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
3.2 MB (3,381,248 bytes)

Service
Display name:
WinAgents HyperConf Server 5.4

Service name:
HyperConfServer6

Description:
Performs HyperConf's background tasks

Type:
Win32OwnProcess

Depends on:
SyslogService WinAgentsTftpService4


Scan hcserver.exe - Powered by Reason Core Security