GWCtlSrv.exe

GlassWire

GlassWire

It runs as a separate (within the context of its own process) windows Service named “GlassWire Control Service”.
Publisher:
SecureMix LLC  (signed by GlassWire)

Product:
GlassWire

Description:
GlassWire Control Service

Version:
1.1.27.0b

MD5:
3e41800542045833349cb7e53c1eb7cb

SHA-1:
a287d7b8414d2af934dcedb609de5c5d3b00ba63

SHA-256:
aad65515eb475e9eea35b222e6fac1f62a553195aaae43ebfc1e04b022346363

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/6/2024 3:34:09 AM UTC  (today)

File size:
8.4 MB (8,825,344 bytes)

Product version:
1.1.27.0b

Copyright:
(С) 2015 SecureMix LLC

Original file name:
GWCtlSrv.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\glasswire\gwctlsrv.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
3/23/2015 8:00:00 PM

Valid to:
5/22/2016 7:59:59 PM

Subject:
CN=GlassWire, O=GlassWire, L=Austin, S=Texas, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
06384809953F926C77500E887D1BBEA0

File PE Metadata
Compilation timestamp:
9/29/2015 5:17:41 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
12.0

Entry address:
0x4365F0

Entry point:
E8, C9, 06, 00, 00, E9, 4B, FE, FF, FF, FF, 25, 50, AD, C1, 00, FF, 25, 4C, AD, C1, 00, FF, 25, 48, AD, C1, 00, FF, 25, 44, AD, C1, 00, FF, 25, 40, AD, C1, 00, FF, 25, 3C, AD, C1, 00, FF, 25, 38, AD, C1, 00, FF, 25, 34, AD, C1, 00, FF, 25, 30, AD, C1, 00, FF, 25, 2C, AD, C1, 00, FF, 25, 28, AD, C1, 00, FF, 25, 24, AD, C1, 00, FF, 25, 20, AD, C1, 00, FF, 25, 1C, AD, C1, 00, FF, 25, 18, AD, C1, 00, FF, 25, 14, AD, C1, 00, FF, 25, 10, AD, C1, 00, FF, 25, 0C, AD, C1, 00, FF, 25, 08, AD, C1, 00, FF, 25, 04, AD...
 
[+]

Entropy:
5.8610

Code size:
6.2 MB (6,539,264 bytes)

Service
Display name:
GlassWire Control Service

Service name:
GlassWire

Description:
Helps protect your computer and privacy via network visualization

Type:
Win32OwnProcess

Depends on:
BFE


Scan GWCtlSrv.exe - Powered by Reason Core Security