GWCtlSrv.exe

GlassWire

GlassWire

It runs as a separate (within the context of its own process) windows Service named “GlassWire Control Service”.
Publisher:
SecureMix LLC  (signed by GlassWire)

Product:
GlassWire

Description:
GlassWire Control Service

Version:
1.2.1088.0

MD5:
a29062967ac9b5a13102fd98f29d067b

SHA-1:
c508804ed2be3b393d930ccb47b9e553ef1d4c26

SHA-256:
e861ed7649d2854369648f9ecf1752bf148cd9d18b192aac2e98fb37bdba4f14

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 8:52:33 PM UTC  (today)

File size:
4.2 MB (4,427,728 bytes)

Product version:
1.2.1088.0

Copyright:
(С) 2017 SecureMix LLC

Original file name:
GWCtlSrv.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\glasswire\gwctlsrv.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
4/28/2016 2:00:00 AM

Valid to:
6/28/2018 1:59:59 AM

Subject:
CN=GlassWire, O=GlassWire, L=Austin, S=Texas, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
13A98B3B6D5E49D3AA9670AC1C0F634A

File PE Metadata
Compilation timestamp:
1/10/2017 11:47:44 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
12.0

Entry address:
0xF25000

Entry point:
EB, 08, 0F, 56, 43, 00, 00, 00, 00, 00, E9, 00, 20, 00, 00, 54, 41, 47, 47, 00, 20, 00, 00, 0E, 1B, 00, 00, 01, 00, 30, 82, 1B, 0A, 06, 09, 2A, 86, 48, 86, F7, 0D, 01, 07, 02, A0, 82, 1A, FB, 30, 82, 1A, F7, 02, 01, 01, 31, 09, 30, 07, 06, 05, 2B, 0E, 03, 02, 1A, 30, 82, 0F, 20, 06, 09, 2A, 86, 48, 86, F7, 0D, 01, 07, 01, A0, 82, 0F, 11, 04, 82, 0F, 0D, D0, 00, 01, 00, 01, C1, B1, A1, 02, 00, 04, 00, 05, 00, 00, 00, 26, 00, 00, 00, 01, 00, 7A, 70, AB, D0, 3A, DC, 00, BB, D3, E3, D7, 82, 4B, F8, D4, DD, 2C...
 
[+]

Code size:
7.2 MB (7,505,408 bytes)

Service
Display name:
GlassWire Control Service

Service name:
GlassWire

Description:
Helps protect your computer and privacy via network visualization

Type:
Win32OwnProcess

Depends on:
BFE


Scan GWCtlSrv.exe - Powered by Reason Core Security