HipServAgent.exe

Axentra QuickConnect

Axentra Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘HipServ Agent’. This is installed with Stora Desktop Applications.
Publisher:
Axentra Corporation  (signed and verified)

Product:
Axentra QuickConnect

Description:
HipServAgent Application

Version:
1.4.4.159

MD5:
68d8688130ef9b5f5f267dbf511dc8b7

SHA-1:
8426f947d525abb841495fc7a0c91acece999c68

SHA-256:
1d44def7342d2c5faee0002127a46f8f1ee275e27d33dbaf5f72b9b7b45a218d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:15:47 AM UTC  (today)

File size:
2.5 MB (2,618,736 bytes)

Product version:
1.4.4.159

Copyright:
©2010 NETGEAR,Inc.

Original file name:
HipServAgent.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\netgear\stora desktop applications\hipservagent\hipservagent.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/2/2010 8:00:00 PM

Valid to:
6/3/2011 7:59:59 PM

Subject:
CN=Axentra Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Axentra Corporation, L=Ottawa, S=Ontario, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2207F7BED89B4FE0829AA229D1EADD72

File PE Metadata
Compilation timestamp:
4/15/2011 10:54:37 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:OecmIdP2TFG8nJTEKE2LGuuuuuuuuuuuKuuuuuuuuuuueOSxJuuuuuuuuuuuuu+x:Po25GKPQuuuuuuuuuuuKuuuuuuuuuuu2

Entry address:
0x10B2BC

Entry point:
E8, F3, 06, 00, 00, E9, 35, FD, FF, FF, FF, 25, 9C, D5, 52, 00, FF, 25, A0, D5, 52, 00, 6A, 10, 68, E0, 48, 58, 00, E8, 4A, 04, 00, 00, 33, C0, 89, 45, E0, 89, 45, FC, 89, 45, E4, 8B, 45, E4, 3B, 45, 10, 7D, 13, 8B, 75, 08, 8B, CE, FF, 55, 14, 03, 75, 0C, 89, 75, 08, FF, 45, E4, EB, E5, C7, 45, E0, 01, 00, 00, 00, C7, 45, FC, FE, FF, FF, FF, E8, 08, 00, 00, 00, E8, 51, 04, 00, 00, C2, 14, 00, 83, 7D, E0, 00, 75, 11, FF, 75, 18, FF, 75, E4, FF, 75, 0C, FF, 75, 08, E8, 9A, FA, FF, FF, C3, CC, CC, CC, CC, CC...
 
[+]

Entropy:
6.1083

Code size:
1.2 MB (1,228,800 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
HipServ Agent

Command:
C:\Program Files\netgear\stora desktop applications\hipservagent\hipservagent.exe


Windows Firewall Allowed Program
Name:
C:\Program Files\NETGEAR\Stora Desktop Applications\HipServAgent\HipServAgent.exe


The file HipServAgent.exe has been discovered within the following program.

Stora Desktop Applications  by Axentra Corporation
www.axentra.com
About 6% of users remove it
 
Powered by Should I Remove It?

Scan HipServAgent.exe - Powered by Reason Core Security