windowsserver.exe

KinoniRemoteDesktop

Kinoni Oy

This is installed with Kinoni Remote Desktop 1.16.
Publisher:
Kinoni  (signed by Kinoni Oy)

Product:
KinoniRemoteDesktop

Description:
KinoniRemoteDesktop

Version:
1, 0, 0, 0

MD5:
18f08949bde5ec4c82f008fe8b39ed1c

SHA-1:
12a5852a8bac61b24e5fcf52abcd405cbf86a1a7

SHA-256:
4134ebe7522e8c794fd33e031f02ededb3b3b72808e367f3bd2f45a9475733e4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 9:45:03 AM UTC  (today)

File size:
4.2 MB (4,413,256 bytes)

Product version:
1, 0, 0, 0

Copyright:
Copyright © 2011

Original file name:
KinoniRemoteDesktop.exe

File type:
Executable application (Win32 EXE)

Language:
Finnish (Finland)

Common path:
C:\Program Files\kinoni\remote desktop\windowsserver.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
12/18/2012 9:18:06 AM

Valid to:
3/13/2014 4:09:09 PM

Subject:
CN=Kinoni Oy, O=Kinoni Oy, L=Oulu, S=Oulu, C=FI

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121D2C2263F0298FBCB6B3B5F87060BE345

File PE Metadata
Compilation timestamp:
3/27/2013 3:37:41 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:+IQgDJT+a7f1gKFLRJC4Vh30sx3ljFUq4AaxOf8P:TQ4JrbHC4Vh3b14

Entry address:
0x12E6E1

Entry point:
E8, D7, 7D, 00, 00, E9, 89, FE, FF, FF, E8, BD, 7E, 00, 00, 85, C0, 74, 08, 6A, 16, E8, BF, 7E, 00, 00, 59, F6, 05, 4C, B5, 56, 00, 02, 74, 11, 6A, 01, 68, 15, 00, 00, 40, 6A, 03, E8, 3B, 00, 00, 00, 83, C4, 0C, 6A, 03, E8, A6, 28, 00, 00, CC, 8B, FF, 55, 8B, EC, 8B, 4D, 0C, A1, 4C, B5, 56, 00, 8B, 55, 08, 23, 55, 0C, F7, D1, 23, C8, 0B, CA, 89, 0D, 4C, B5, 56, 00, 5D, C3, 8B, FF, 55, 8B, EC, 8B, 45, 08, A3, 70, 68, 5F, 00, 5D, C3, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A1, D0, B4, 56, 00, 33, C5, 89...
 
[+]

Entropy:
5.1493

Code size:
1.3 MB (1,348,608 bytes)

The file windowsserver.exe has been discovered within the following program.

About 5% of users remove it
 
Powered by Should I Remove It?

Scan windowsserver.exe - Powered by Reason Core Security