HipServAgent.exe

Axentra QuickConnect

Axentra Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘HipServ Agent’.
Publisher:
Axentra Corporation  (signed and verified)

Product:
Axentra QuickConnect

Description:
HipServAgent Application

Version:
1.3.5.132

MD5:
f323cbab24d71d6ee3c8a246d3e56d62

SHA-1:
9eb028dec53fb01b979b7a60dda9e335d28f542b

SHA-256:
e70819ae2791a9725a522a732a7cce9ccf9a7b2acb727506b8a4c9e828cc7241

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 2:10:39 PM UTC  (today)

File size:
1.9 MB (2,011,400 bytes)

Product version:
1.3.5.132

Copyright:
© 2003-2010 Axentra Corporation.

Original file name:
HipServAgent.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\orange\home library\hipservagent\hipservagent.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
6/2/2009 2:00:00 AM

Valid to:
6/3/2010 1:59:59 AM

Subject:
CN=Axentra Corporation, O=Axentra Corporation, STREET=377 Dalhousie St., STREET=Suite 210, L=Ottawa, S=Ontario, PostalCode=K1N 9N8, C=CA

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
6C977BB7B1D99AD9A41589F167DF66F6

File PE Metadata
Compilation timestamp:
2/22/2010 3:43:25 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:HQv6jqdBDYYKRF08PvDzX/U5hmIodeN93fCHYTMzvu4P+zHPe:FGjJZ4v3PUqg9vqYT0uzHG

Entry address:
0xF14D7

Entry point:
E8, A8, 06, 00, 00, E9, 35, FD, FF, FF, 6A, 10, 68, 38, DE, 56, 00, E8, 07, 03, 00, 00, 33, C0, 89, 45, E0, 89, 45, FC, 89, 45, E4, 8B, 45, E4, 3B, 45, 10, 7D, 13, 8B, 75, 08, 8B, CE, FF, 55, 14, 03, 75, 0C, 89, 75, 08, FF, 45, E4, EB, E5, C7, 45, E0, 01, 00, 00, 00, C7, 45, FC, FE, FF, FF, FF, E8, 08, 00, 00, 00, E8, 0E, 03, 00, 00, C2, 14, 00, 83, 7D, E0, 00, 75, 11, FF, 75, 18, FF, 75, E4, FF, 75, 0C, FF, 75, 08, E8, 41, FA, FF, FF, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 83, 3D, 20, 4A, 59, 00, 00...
 
[+]

Code size:
1.1 MB (1,146,880 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
HipServ Agent

Command:
C:\Program Files\orange\home library\hipservagent\hipservagent.exe


Scan HipServAgent.exe - Powered by Reason Core Security