edbsrvr.exe

ElevateDB Server (Win64 Unicode)

IHS Inc

It runs as a separate (within the context of its own process) windows Service named “ElevateDB Server”.
Publisher:
Elevate Software  (signed by IHS Inc)

Product:
ElevateDB Server (Win64 Unicode)

Version:
2.12 Build 2

MD5:
2b57808360d5b3f8f459d4bedc1a53df

SHA-1:
04214884c3c62cb9739d87aed7bee2b3d6998bfc

SHA-256:
8123b8039189ff5e356265a05b5ab64dcc4c64c84bdc37a213ad01931a54dbb2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 1:33:05 PM UTC  (today)

File size:
6.6 MB (6,917,400 bytes)

Product version:
4.1.1.1

Copyright:
Copyright 2013, IHS Inc.

Original file name:
edbsrvr.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\ihs\elevatedb server (win64 unicode)\edbsrvr.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
2/13/2013 6:00:00 PM

Valid to:
2/18/2016 5:59:59 PM

Subject:
CN=IHS Inc, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=IHS Inc, L=Englewood, S=Colorado, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
564396E1886FC486591B26503ADECA3D

File PE Metadata
Compilation timestamp:
6/28/2013 10:19:35 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:8bNGYeBPLEJxS99Fpv2fs7OcmcO33TpvGlsnPGrJakRU/H1J6JkdO1ep3O0vzO3l:Td9Pgl3YmnOgke/HueV8+a7vL

Entry address:
0x5954A0

Entry point:
55, 53, 48, 81, EC, D8, 00, 00, 00, 48, 8B, EC, 48, C7, 45, 50, 00, 00, 00, 00, 48, C7, 45, 38, 00, 00, 00, 00, 48, C7, 45, 48, 00, 00, 00, 00, 48, C7, 45, 40, 00, 00, 00, 00, 48, C7, 45, 70, 00, 00, 00, 00, 48, C7, 45, 58, 00, 00, 00, 00, 48, C7, 45, 68, 00, 00, 00, 00, 48, C7, 45, 60, 00, 00, 00, 00, 48, C7, 45, 78, 00, 00, 00, 00, 48, C7, 85, 88, 00, 00, 00, 00, 00, 00, 00, 48, C7, 85, 80, 00, 00, 00, 00, 00, 00, 00, 48, C7, 85, 90, 00, 00, 00, 00, 00, 00, 00, 48, C7, 85, 98, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.8204

Code size:
5.6 MB (5,852,160 bytes)

Service
Display name:
ElevateDB Server

Service name:
EDBSRVR

Type:
Win32OwnProcess


Scan edbsrvr.exe - Powered by Reason Core Security