UdServe.exe

Diskeeper Corporation Undelete 2009

Diskeeper Corporation

It runs as a windows Service named “Undelete”.
Publisher:
Diskeeper Corporation  (signed and verified)

Product:
Diskeeper Corporation Undelete 2009

Description:
UndeleteService

Version:
6.0.157.0

MD5:
c259d2dd7c283a6d240f0a026fc359e6

SHA-1:
8114239c537c5c303875840a939a44c5c2409793

SHA-256:
ceb5e159cf68a030f8977d88940e5c626204da20bde88fdf1f0eaefc150d8081

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 1:25:07 PM UTC  (today)

File size:
1.2 MB (1,209,624 bytes)

Product version:
6.0.157.0

Copyright:
Copyright © 1997 - 2008

Original file name:
UdServe.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\diskeeper corporation\undelete\udserve.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/10/2007 7:00:00 AM

Valid to:
9/10/2008 6:59:59 AM

Subject:
CN=Diskeeper Corporation, OU=Technical, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Diskeeper Corporation, L=Burbank, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1FBF04F91A2730FFC53C1FA38FEE3A4D

File PE Metadata
Compilation timestamp:
7/23/2008 4:51:33 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:J5a8I4NG9SVT4hZT/vdpY4AdaWyC0w1FyNF5bkFxUBKWh6YVXlZ:J5HG9S2ZT/4Z7raF5YCBKCB

Entry address:
0x7F7D0

Entry point:
E8, A8, DA, 00, 00, E9, 17, FE, FF, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 48, 80, 4E, 00, 89, 0D, 44, 80, 4E, 00, 89, 15, 40, 80, 4E, 00, 89, 1D, 3C, 80, 4E, 00, 89, 35, 38, 80, 4E, 00, 89, 3D, 34, 80, 4E, 00, 66, 8C, 15, 60, 80, 4E, 00, 66, 8C, 0D, 54, 80, 4E, 00, 66, 8C, 1D, 30, 80, 4E, 00, 66, 8C, 05, 2C, 80, 4E, 00, 66, 8C, 25, 28, 80, 4E, 00, 66, 8C, 2D, 24, 80, 4E, 00, 9C, 8F, 05, 58, 80, 4E, 00, 8B, 45, 00, A3, 4C, 80, 4E, 00, 8B, 45, 04, A3, 50, 80, 4E, 00, 8D, 45, 08, A3, 5C, 80, 4E, 00, 8B...
 
[+]

Entropy:
5.8738

Code size:
696 KB (712,704 bytes)

Service
Display name:
Undelete

Service name:
UndeleteService

Description:
Saves and restores deleted files using the Recovery Bin. Part of Undelete, a Diskeeper Corporation product.

Type:
Win32OwnProcess, InteractiveProcess


Scan UdServe.exe - Powered by Reason Core Security