xcorefirewallsvc.exe

xCore Antivirus

xCore LLC

It runs as a separate (within the context of its own process) windows Service named “xCoreFirewallSvc”.
Publisher:
xCore Software  (signed by xCore LLC)

Product:
xCore Antivirus

Description:
xCore Service

Version:
1.0.0.0

MD5:
473b97976f351cd48eeacd831976cccb

SHA-1:
3ff5884edbb72a41f777d55e0f14fa0ef1b2ffb8

SHA-256:
7cb154a034db03c578840225bd7d291ea066610be9d7e0124992613fd5f7c0ab

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 5:58:19 PM UTC  (today)

File size:
2.6 MB (2,756,168 bytes)

Product version:
1.0.0.0

Copyright:
Copyright (c) xCore

Trademarks:
All Rights Reserved

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\xcore software\xcore complex protection\xcorefirewallsvc.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
8/21/2013 5:53:58 PM

Valid to:
8/22/2014 5:53:58 PM

Subject:
E=messages@avxcore.com, CN=xCore LLC, O=xCore LLC, L=Orsk, S=Orenburg, C=RU

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112150E0FC36F98134C795FC9A4047CAEB9E

File PE Metadata
Compilation timestamp:
5/29/2014 12:31:46 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:w0cTYu/ozW5fMS/XiNkcZjhiI7RcWfH2pUPVI:w6W0ZjhNRCUdI

Entry address:
0x246F68

Entry point:
55, 8B, EC, B9, 05, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, B8, C4, 95, 63, 00, E8, A3, 79, DC, FF, 33, C0, 55, 68, 66, 70, 64, 00, 64, FF, 30, 64, 89, 20, 8D, 55, E8, B8, 01, 00, 00, 00, E8, 44, F8, DB, FF, 8B, 45, E8, 8D, 55, EC, E8, F9, BE, DD, FF, 8B, 45, EC, BA, 80, 70, 64, 00, E8, 58, 3B, DC, FF, 0F, 85, 91, 00, 00, 00, 0F, B6, 05, 8C, 70, 64, 00, 50, 8D, 45, E4, 50, 8D, 55, E0, 33, C0, E8, 10, F8, DB, FF, 8B, 45, E0, 33, C9, BA, 9C, 70, 64, 00, E8, FD, 48, DE, FF, 8B, 55, E4, B8, F8, 30, 65, 00, E8...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.3 MB (2,380,800 bytes)

Service
Display name:
xCoreFirewallSvc

Type:
Win32OwnProcess


Scan xcorefirewallsvc.exe - Powered by Reason Core Security