HWDeviceService.EXE

HWDeviceService

It runs as a windows Service named “HWDeviceService.exe”.
Product:
HWDeviceService

Description:
DCSHOST

Version:
2, 0, 0, 42

MD5:
d84a3dbc2ba6f03270c79b4d218be19d

SHA-1:
9167886b0f90840dcf0fc5d7a74c90713d6cac75

SHA-256:
4a098399be96385e6940e6384ec2ac80cf5f5306800c6f0d20709d5f8ff51ffe

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
5/6/2024 7:43:25 PM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
Win.Trojan.Ramnit-1847
0.98/23207

File size:
383.9 KB (393,122 bytes)

Product version:
2, 0, 0, 42

Copyright:
Copyright (C) 2008

Original file name:
HWDeviceService.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\datacardservice\hwdeviceservice.exe

File PE Metadata
Compilation timestamp:
11/16/2010 8:37:39 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x45000

Entry point:
60, E8, 00, 00, 00, 00, 5D, 8B, C5, 81, ED, A8, A6, 01, 20, 2B, 85, 0F, AE, 01, 20, 89, 85, 0B, AE, 01, 20, B0, 00, 86, 85, 40, B0, 01, 20, 3C, 01, 0F, 85, BC, 01, 00, 00, 83, BD, 3B, AF, 01, 20, 00, 74, 33, 83, BD, 3F, AF, 01, 20, 00, 74, 2A, 8B, 85, 0B, AE, 01, 20, 2B, 85, 3B, AF, 01, 20, 8B, 00, 89, 85, 78, AF, 01, 20, 8B, 85, 0B, AE, 01, 20, 2B, 85, 3F, AF, 01, 20, 8B, 00, 89, 85, 7C, AF, 01, 20, EB, 61, 83, BD, 43, AF, 01, 20, 00, 74, 58, 8B, 85, 0B, AE, 01, 20, 2B, 85, 43, AF, 01, 20, FF, 30, 8D, 85...
 
[+]

Packer / compiler:
ASPack v1.08.04

Code size:
189 KB (193,536 bytes)

Service
Display name:
HWDeviceService.exe

Description:
Service for runing Mobile applications autorun.

Type:
Win32OwnProcess, InteractiveProcess

Depends on:
RPCSS


Scan HWDeviceService.EXE - Powered by Reason Core Security