TopShelfAgent.exe

TopShelfAgent

Invisatec LLC

It runs as a separate (within the context of its own process) windows Service named “The Kure Agent”.
Publisher:
Invisatec LLC  (signed and verified)

Product:
TopShelfAgent

Version:
2.0.5919.26972

MD5:
80479bfafc36211cfbec19683aef0f18

SHA-1:
787df1a24ca737e61cee3811e79c79d0668a2588

SHA-256:
0499f35eeb9aa01efcc14cbe3797415adb0d867e933f6fd0d2e6c11b3ded1010

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/28/2024 4:43:36 PM UTC  (today)

Scan engine
Detection
Engine version

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1120

Rising Antivirus
Malware.Undefined!8.C-FCohpNQ2ImJ (Cloud)
23.00.65.161027

File size:
95.8 KB (98,104 bytes)

Product version:
2.0.5919.26972

Copyright:
Copyright © 2015

Original file name:
TopShelfAgent.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\the kure\the kure\topshelfagent.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
12/17/2015 7:00:00 PM

Valid to:
12/16/2016 6:59:59 PM

Subject:
CN=Invisatec LLC, O=Invisatec LLC, L=Tampa, S=Florida, C=US, SERIALNUMBER=L14000169989, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Florida, OID.1.3.6.1.4.1.311.60.2.1.3=US

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA - G2, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
3FF9574A7DA5F5FDAB2AF583B2879A30

File PE Metadata
Compilation timestamp:
3/16/2016 2:59:05 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
48.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:tu3yEmYjuPBiTjPX5f8EGO0kKUbKFMfg6LPei6JdOvIGyy1PeD:cCB5iH/VKUbKFMfg6LPeiidOvIGyOPc

Entry address:
0x177BE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 02, 00, 10, 00, 00, 00, 20, 00, 00, 80, 18, 00, 00, 00, 50, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 01, 00, 00, 00, 38, 00, 00, 80, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.1478

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
86 KB (88,064 bytes)

Service
Display name:
The Kure Agent

Type:
Win32OwnProcess


Scan TopShelfAgent.exe - Powered by Reason Core Security