tumservice.exe

TumarCSP service x64

LLP Scientific-Research Laboratory of Gamma Technologies

It runs as a separate (within the context of its own process) windows Service named “TumSRV”.
Publisher:
ТОО НИЛ Гамма Технологии  (signed by LLP Scientific-Research Laboratory of Gamma Technologies)

Product:
TumarCSP service x64

Version:
1.0.1.40

MD5:
102bf8c110bbc30bf2c3cfcd8df3ec70

SHA-1:
8bf928e8ddea64180fb0ae400a27c04e8152ce80

SHA-256:
8a9c3f4fd6e6df990931fd8001041c7a54c03cf1944ce894d21019af2bc20ddc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 4:33:41 PM UTC  (today)

File size:
467.3 KB (478,464 bytes)

Product version:
1.0.1.40

Copyright:
Copyright(C) 2016

Original file name:
TumServi.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\Windows\System32\tumservice.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
6/16/2015 3:00:00 AM

Valid to:
8/15/2017 2:59:59 AM

Subject:
CN=LLP Scientific-Research Laboratory of Gamma Technologies, O=LLP Scientific-Research Laboratory of Gamma Technologies, L=Almaty, S=Almaty, C=KZ

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
55D3700C141F019CB3B66220631646FF

File PE Metadata
Compilation timestamp:
5/31/2016 11:34:11 AM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
12.0

CTPH (ssdeep):
6144:bGPaIjYqlZviYILHEj8Ext7cxNZETTo9+TWz7LsGdGP8bsPjqxUQr382ZLE8W8yv:bGS0CYILHQXhTHP8mhAVZLPyYQZ

Entry address:
0x1AAC0

Entry point:
48, 83, EC, 28, E8, 0B, 53, 01, 00, 48, 83, C4, 28, E9, 42, FE, FF, FF, CC, CC, 48, 85, C9, 74, 37, 53, 48, 83, EC, 20, 4C, 8B, C1, 48, 8B, 0D, D8, 9B, 05, 00, 33, D2, FF, 15, 48, 37, 03, 00, 85, C0, 75, 17, E8, 83, E9, FF, FF, 48, 8B, D8, FF, 15, 86, 36, 03, 00, 8B, C8, E8, 93, E9, FF, FF, 89, 03, 48, 83, C4, 20, 5B, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 8B, C1, 48, F7, D9, 48, A9, 07, 00, 00, 00, 74, 0F, 66, 90...
 
[+]

Code size:
304.5 KB (311,808 bytes)

Service
Display name:
TumSRV

Type:
Win32OwnProcess


Scan tumservice.exe - Powered by Reason Core Security