splunkweb.exe

SPLUNK INC

It runs as a separate (within the context of its own process) windows Service named “splunkweb”.
Publisher:
SPLUNK INC  (signed and verified)

MD5:
30b359e185409d691e4fe5fc8d7b1ac4

SHA-1:
eb370de3b05a647e40dc7184085130570e08d769

SHA-256:
20d4dc9dc8ef9b7e920f86e9dfe62e86f9121a48368fe6da7eab2b86c05ba1f6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/3/2024 12:02:10 AM UTC  (today)

File size:
19.7 KB (20,184 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\splunk\bin\splunkweb.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
7/22/2014 7:00:00 PM

Valid to:
6/15/2015 6:59:59 PM

Subject:
CN=SPLUNK INC, O=SPLUNK INC, L=San Francisco, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5FF356ACDDB3CE4FBF8426C68D27940A

File PE Metadata
Compilation timestamp:
12/17/2014 3:23:04 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
11.0

Entry address:
0x1DF0

Entry point:
48, 83, EC, 28, E8, 5B, 01, 00, 00, 48, 83, C4, 28, E9, 32, FE, FF, FF, CC, CC, 48, 83, EC, 28, 48, 8B, 01, 81, 38, 63, 73, 6D, E0, 75, 1C, 83, 78, 18, 04, 75, 16, 8B, 48, 20, 8D, 81, E0, FA, 6C, E6, 83, F8, 02, 76, 0F, 81, F9, 00, 40, 99, 01, 74, 07, 33, C0, 48, 83, C4, 28, C3, E8, 6F, 03, 00, 00, CC, 48, 83, EC, 28, 48, 8D, 0D, BD, FF, FF, FF, E8, 64, 03, 00, 00, 33, C0, 48, 83, C4, 28, C3, CC, FF, 25, 2E, 13, 00, 00, FF, 25, D8, 12, 00, 00, 33, C0, C3, CC, FF, 25, D6, 12, 00, 00, FF, 25, D8, 12, 00, 00...
 
[+]

Entropy:
6.0266

Code size:
5 KB (5,120 bytes)

Service
Display name:
splunkweb

Description:
Splunkweb is the web interface for Splunk, a data platform for operational intelligence. It is required for Splunk instances that provide searching, alerting and reporting. You can connect to it using

Type:
Win32OwnProcess


Scan splunkweb.exe - Powered by Reason Core Security