hcserver.exe

Tandem Systems Ltd.

It runs as a separate (within the context of its own process) windows Service named “WinAgents HyperConf Server 5.4”.
Publisher:
WinAgents Software Group  (signed by Tandem Systems Ltd.)

Description:
HyperConf Server

Version:
5.5.0.650

MD5:
60031ee658279a6377bcb27b3d566384

SHA-1:
9dc7bad2e9142b416967b516927a31bddf5377c1

SHA-256:
d4b3534c0ff7c6cf04f65b78fc4ef9594f047300c5fe10638e8f3a699cc3b7d3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/28/2024 3:51:09 AM UTC  (today)

File size:
1.8 MB (1,905,816 bytes)

Product version:
5.5.0.650

Copyright:
(c) 2014 Tandem Systems, Ltd. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\common files\winagents\hcserver.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/30/2014 2:00:00 AM

Valid to:
7/31/2015 1:59:59 AM

Subject:
CN=Tandem Systems Ltd., OU=WinAgents Software Group, O=Tandem Systems Ltd., STREET="Of 302, 2a, Dachny per.", L=Saransk, S=Mordovia, PostalCode=430011, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00A4BCE9DC8A0FF8E9BF1163BB4FA5A0A5

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:dRN5DV5lUfd6ouVCZkdN8YPcMeqD9YUiVaztg8tU1UWmqs9tMKrrWXrrRruKMrd0:vNXbdVCadVriV6jWO6h3u0wiOaDN

Entry address:
0x1000

Entry point:
68, 01, 90, 7E, 00, E8, 01, 00, 00, 00, C3, C3, B0, C2, A3, D2, 02, 52, F5, 03, 1F, B1, 45, 1B, D1, F1, 00, 85, 3D, E6, C4, 1D, 05, 10, C6, FC, 54, 3F, B4, AF, 77, 8E, 1F, 70, 4A, 2F, 94, 9B, 36, 6B, C4, 30, E1, C8, 67, 9F, 97, 4E, 10, 32, 64, AE, C8, FD, BD, A5, C7, 5D, 25, 5E, 78, C8, 62, 74, 18, A5, 5E, 77, D6, 77, 78, AD, A3, 70, 62, 8E, B0, 68, B8, BB, AF, B4, 15, 4C, 50, 5A, 9E, CA, 37, EF, 15, 3C, A9, 1B, 7B, 8F, DB, 0F, 46, 11, CB, 2D, 8C, 34, 4F, 08, 18, F8, A3, 10, DB, F5, 9A, FE, AB, 64, 5E, FA...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
3.2 MB (3,381,248 bytes)

Service
Display name:
WinAgents HyperConf Server 5.4

Service name:
HyperConfServer6

Description:
Performs HyperConf's background tasks

Type:
Win32OwnProcess

Depends on:
SyslogService WinAgentsTftpService4


Scan hcserver.exe - Powered by Reason Core Security