HeimdalAgentService.exe

Heimdal Agent

CSIS Security Group A/S

It runs as a windows Service named “Heimdal Service”.
Publisher:
CSIS Security Group  (signed by CSIS Security Group A/S)

Product:
Heimdal Agent

Description:
HeimdalAgentService

Version:
1.10.1.662

MD5:
cff40a1ad23a8d2a0df810ff074c4fbe

SHA-1:
5e6ceea02a4f30a5c341c522c7d1de6b7ae689b1

SHA-256:
15acd9373a324f2df8b379ec28a6c7c4ba9f607ab4b2c0656d9c5fd4fbff1aad

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 9:51:46 AM UTC  (today)

File size:
130.7 KB (133,792 bytes)

Product version:
1.10.1.662

Copyright:
Copyright© CSIS Security Group 2010

Original file name:
HeimdalAgentService.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\heimdal\service\heimdalagentservice.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/9/2013 3:59:02 PM

Valid to:
4/10/2015 3:59:02 PM

Subject:
CN=CSIS Security Group A/S, OU=Operations, O=CSIS Security Group A/S, L=Copenhagen K, S=Copenhagen, C=DK

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112117733A725AC5CF64748BE84EB14D0F05

File PE Metadata
Compilation timestamp:
9/24/2014 3:52:16 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:S1tBpsa1sYAq5qAPxvnmUnizwVoEgFrAZP03IYg38SxbahLClrJBa68:S1psuAYPxvmLMXgFrAZP04YS8wzT8

Entry address:
0x18E5E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
92 KB (94,208 bytes)

Service
Display name:
Heimdal Service

Service name:
HeimdalService

Type:
Win32OwnProcess, InteractiveProcess


Scan HeimdalAgentService.exe - Powered by Reason Core Security