GWCtlSrv.exe

GlassWire

GlassWire

It runs as a separate (within the context of its own process) windows Service named “GlassWire Control Service”.
Publisher:
SecureMix LLC  (signed by GlassWire)

Product:
GlassWire

Description:
GlassWire Control Service

Version:
1.2.1059.0b

MD5:
6abd35985df9cbf326de156f514e166f

SHA-1:
ebb8770fbe170eb81eb317fc4f5db553e460dcc7

SHA-256:
f1d3be52b2e58e4609f6fc7cbff662ecd9fa7712f84e78de5d0689cc314508d0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 3:43:14 PM UTC  (today)

File size:
9.5 MB (9,956,864 bytes)

Product version:
1.2.1059.0b

Copyright:
(С) 2016 SecureMix LLC

Original file name:
GWCtlSrv.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\glasswire\gwctlsrv.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
3/24/2015 7:00:00 AM

Valid to:
5/23/2016 6:59:59 AM

Subject:
CN=GlassWire, O=GlassWire, L=Austin, S=Texas, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
06384809953F926C77500E887D1BBEA0

File PE Metadata
Compilation timestamp:
4/13/2016 5:21:07 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
12.0

Entry address:
0x4CFB44

Entry point:
E8, D5, 06, 00, 00, E9, 4B, FE, FF, FF, FF, 25, 8C, 4D, D2, 00, FF, 25, 88, 4D, D2, 00, FF, 25, 84, 4D, D2, 00, FF, 25, 80, 4D, D2, 00, FF, 25, D0, 4E, D2, 00, FF, 25, 7C, 4D, D2, 00, FF, 25, 78, 4D, D2, 00, FF, 25, 74, 4D, D2, 00, FF, 25, 70, 4D, D2, 00, FF, 25, 6C, 4D, D2, 00, FF, 25, 68, 4D, D2, 00, FF, 25, 64, 4D, D2, 00, FF, 25, 60, 4D, D2, 00, FF, 25, 5C, 4D, D2, 00, FF, 25, 58, 4D, D2, 00, FF, 25, 54, 4D, D2, 00, FF, 25, 50, 4D, D2, 00, FF, 25, 4C, 4D, D2, 00, FF, 25, 48, 4D, D2, 00, FF, 25, 44, 4D...
 
[+]

Entropy:
5.8490

Code size:
7 MB (7,337,472 bytes)

Service
Display name:
GlassWire Control Service

Service name:
GlassWire

Description:
Helps protect your computer and privacy via network visualization

Type:
Win32OwnProcess

Depends on:
BFE


Scan GWCtlSrv.exe - Powered by Reason Core Security