ServiceSecurityEditor.exe

ServiceSecurityEditor

Core Technologies Consulting, LLC

This is a setup program which is used to install the application. The file has been seen being downloaded from www.coretechnologies.com.
Publisher:
Core Technologies Consulting, LLC  (signed and verified)

Product:
ServiceSecurityEditor

Description:
Service Security Editor

Version:
1, 3, 0, 67

MD5:
543dc8479673594707c7b60b38493669

SHA-1:
0e3e65c8b7cda70826f36ba7776258ad83f98513

SHA-256:
79bd9983d66be7ed9d3ebfd3dbf995548768c021fc1069684f996218244f69a4

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/24/2024 4:02:33 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Packed/PECompact
7.1.1

File size:
338.1 KB (346,168 bytes)

Product version:
1, 3, 0, 67

Copyright:
© 2013, Core Technologies Consulting, LLC

Original file name:
ServiceSecurityEditor.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\servicesecurityeditor.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
3/8/2012 6:00:00 PM

Valid to:
3/9/2017 5:59:59 PM

Subject:
CN="Core Technologies Consulting, LLC", O="Core Technologies Consulting, LLC", STREET=7028-B Thornhill Drive, L=Oakland, S=CA, PostalCode=94611, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00D00935DF99CBA1C55CAFE1BFAB858701

File PE Metadata
Compilation timestamp:
1/1/2013 9:41:09 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:wDF0AgIiw38U0kOw6brxZ043fDl69r1Ac+RnRHjYDAH163DXHnvaPFpqUY8BFE:wR0AgIiw+k4bl/3Z69xA3PALaNpqky

Entry address:
0x1000

Entry point:
B8, B8, 50, 51, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, D4, 72, 48, 33, B2, D8, 32, 6E, 30, E0, 79, C8, B7, FD, 4B, 93, EE, C0, D6, 80, 9A, BB, 21, B9, A7, 0B, A4, 85, 9E, B5, 2F, C9, 11, DC, B3, 1B, DE, 63, A4, 8F, 93, B5, D1, 60, 04, 2C, 6C, 30, C8, 8D, 8A, FF, C8, E1, E3, 87, 78, 81, E8, F9, A0, 69, B2, B0, 18, B3, C1, A4, FD, 77, 92, C1, 20, DC, 8E, B5, DD, 1F, 10, 52, F4, 7D, 9D, 3A, EB, DF, B3, 35, 7A, 6F, 25, 56, 31...
 
[+]

Entropy:
7.8508

Packer / compiler:
PECompact v2

Code size:
725 KB (742,400 bytes)

The file ServiceSecurityEditor.exe has been seen being distributed by the following URL.

Scan ServiceSecurityEditor.exe - Powered by Reason Core Security