HipServAgent.exe

Axentra QuickConnect

Axentra Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘HipServ Agent’.
Publisher:
Axentra Corporation  (signed and verified)

Product:
Axentra QuickConnect

Description:
HipServAgent Application

Version:
1.4.2.1622

MD5:
ed46df9a7d8e8b26b0ea3542567d7fa2

SHA-1:
78becbe87750a211eadf63e754f2ea15508d8351

SHA-256:
38481cf330b6fefae5d4473c362e9713b1db0343a3a906ceaff715ee76ce970c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 6:21:35 PM UTC  (today)

File size:
1.8 MB (1,896,720 bytes)

Product version:
1.4.2.1622

Copyright:
© RaidSonic Technology GmbH

Original file name:
HipServAgent.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\raidsonic\icy box desktop applications\hipservagent\hipservagent.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
6/2/2009 1:00:00 AM

Valid to:
6/3/2010 12:59:59 AM

Subject:
CN=Axentra Corporation, O=Axentra Corporation, STREET=377 Dalhousie St., STREET=Suite 210, L=Ottawa, S=Ontario, PostalCode=K1N 9N8, C=CA

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
6C977BB7B1D99AD9A41589F167DF66F6

File PE Metadata
Compilation timestamp:
1/27/2010 7:40:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:2Nq+oBKExX3q2EzUnoCZCd71Q6ZhsTsFiLcTiY:2A1g2rEYnBw7aT6iY

Entry address:
0xF3A46

Entry point:
E8, E9, 05, 00, 00, E9, 35, FD, FF, FF, 6A, 10, 68, 68, 00, 57, 00, E8, 48, 02, 00, 00, 33, C0, 89, 45, E0, 89, 45, FC, 89, 45, E4, 8B, 45, E4, 3B, 45, 10, 7D, 13, 8B, 75, 08, 8B, CE, FF, 55, 14, 03, 75, 0C, 89, 75, 08, FF, 45, E4, EB, E5, C7, 45, E0, 01, 00, 00, 00, C7, 45, FC, FE, FF, FF, FF, E8, 08, 00, 00, 00, E8, 4F, 02, 00, 00, C2, 14, 00, 83, 7D, E0, 00, 75, 11, FF, 75, 18, FF, 75, E4, FF, 75, 0C, FF, 75, 08, E8, 8C, F9, FF, FF, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 83, 3D, 98, 6A, 59, 00...
 
[+]

Entropy:
6.4551

Code size:
1.1 MB (1,155,072 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
HipServ Agent

Command:
C:\Program Files\raidsonic\icy box desktop applications\hipservagent\hipservagent.exe


Scan HipServAgent.exe - Powered by Reason Core Security