GWCtlSrv.exe

GlassWire

GlassWire

It runs as a separate (within the context of its own process) windows Service named “GlassWire Control Service”.
Publisher:
SecureMix LLC  (signed by GlassWire)

Product:
GlassWire

Description:
GlassWire Control Service

Version:
1.0.63.1053b

MD5:
b05841768224d9aab9b4d5cf61bedaa7

SHA-1:
228993359cb061453663c1dc864bbff1471570da

SHA-256:
4175372e718c9214b5a30c6e02ea786f62749e4920438c49d174f86bfa14578b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 3:52:39 PM UTC  (today)

File size:
7.1 MB (7,445,536 bytes)

Product version:
1.0.63.1053b

Copyright:
(С) 2015 SecureMix LLC

Original file name:
GWCtlSrv.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\glasswire\gwctlsrv.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
3/23/2015 9:00:00 PM

Valid to:
5/22/2016 8:59:59 PM

Subject:
CN=GlassWire, O=GlassWire, L=Austin, S=Texas, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
06384809953F926C77500E887D1BBEA0

File PE Metadata
Compilation timestamp:
7/31/2015 6:22:10 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

Entry address:
0x40C534

Entry point:
E8, 95, 07, 00, 00, E9, 4B, FE, FF, FF, FF, 25, 84, 4A, 8F, 00, FF, 25, 80, 4A, 8F, 00, FF, 25, 7C, 4A, 8F, 00, FF, 25, 78, 4A, 8F, 00, FF, 25, 74, 4A, 8F, 00, FF, 25, 70, 4A, 8F, 00, FF, 25, 6C, 4A, 8F, 00, FF, 25, 68, 4A, 8F, 00, FF, 25, 64, 4A, 8F, 00, FF, 25, 60, 4A, 8F, 00, FF, 25, 5C, 4A, 8F, 00, FF, 25, 58, 4A, 8F, 00, FF, 25, 54, 4A, 8F, 00, FF, 25, 50, 4A, 8F, 00, FF, 25, 4C, 4A, 8F, 00, FF, 25, 48, 4A, 8F, 00, FF, 25, 44, 4A, 8F, 00, FF, 25, 40, 4A, 8F, 00, FF, 25, 3C, 4A, 8F, 00, FF, 25, 38, 4A...
 
[+]

Code size:
4.9 MB (5,188,608 bytes)

Service
Display name:
GlassWire Control Service

Service name:
GlassWire

Description:
Helps protect your computer and privacy via network visualization

Type:
Win32OwnProcess

Depends on:
BFE


Scan GWCtlSrv.exe - Powered by Reason Core Security