hcserver.exe

Tandem Systems Ltd

It runs as a separate (within the context of its own process) windows Service named “WinAgents HyperConf Server 5.4”.
Publisher:
WinAgents Software Group  (signed by Tandem Systems Ltd)

Description:
HyperConf Server

Version:
5.5.0.556

MD5:
009e155eebb7aacc5fe5d0d5aeee0829

SHA-1:
bc1226ae8f316c0a80a787e09ee8535038b3a3dc

SHA-256:
419cd32b4f81553b63599150acf3f8518b3642ba991f46e796d29722bb3bd3b0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 3:15:58 AM UTC  (today)

File size:
1.8 MB (1,843,968 bytes)

Product version:
5.5.0.556

Copyright:
(c) 2010 Tandem Systems, Ltd. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\common files\winagents\hcserver.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
9/3/2009 3:00:00 AM

Valid to:
9/4/2010 2:59:59 AM

Subject:
CN=Tandem Systems Ltd, O=Tandem Systems Ltd, STREET=Ul. Kommunisticheskaya Street, L=Saransk, S=Mordovia, PostalCode=430005, C=RU

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00F2541E6302A2B82D37DAA0C42C298628

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:ppQFM6J1cvACelxd8aFMV8h6h3u0RTR+YsY2Z:LSM6EvePWOMyKdsLZ

Entry address:
0x1000

Entry point:
68, 01, 70, 7D, 00, E8, 01, 00, 00, 00, C3, C3, 40, C9, F3, 7B, 8B, A3, AA, C5, FE, 92, 8B, 19, 6A, 22, 08, 9D, CB, 86, 16, 6F, AB, A3, 45, EC, B8, 41, C9, 7E, 4D, 6A, 60, CC, F1, A0, CB, E4, 49, A9, CC, C9, F9, 21, 7A, 5B, BF, EC, 29, C1, 9A, 1B, 94, 4E, C2, 9C, 47, 92, EF, 37, 36, 79, FE, BE, 7F, 0C, 7C, 6F, 78, DC, 9B, 55, CB, 6A, 5F, 2F, 21, 17, 5C, FB, 63, AB, BB, 70, 84, 39, 61, E9, 8A, 9E, C7, 14, A3, 44, 2E, 92, 3F, 95, 7C, 55, 96, AF, 6B, EF, 0C, B1, 4C, 8A, AB, C7, 38, 90, C5, FC, E2, 10, 9A, 61...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
3.2 MB (3,317,248 bytes)

Service
Display name:
WinAgents HyperConf Server 5.4

Service name:
HyperConfServer6

Description:
Performs HyperConf's background tasks

Type:
Win32OwnProcess

Depends on:
SyslogService WinAgentsTftpService4


Scan hcserver.exe - Powered by Reason Core Security