Services

The Services tab provides information about services on the scanned computer.

Service data is presented in the form of a table. The table contains the following data:

name: service name;

launch: by whom or how the service was launched;

state: service activity status;

PID: service process ID;

command line: service file path;

signed: whether the file is signed;

reputation: a suggested service status according to the internal Metawave service database, which contains information on previous detects.

You can sort the table data in descending/ascending order by clicking toggle in the column of the table containing the data you want the table to be sorted by. You can also search across the table. Enter your query into the search_gray Search field above the service data table and press Enter.

info

FixIt! allows you to use wildcard characters ‘*’ and ‘?’ in searches. The asterisk ‘*’ stands for any number of characters, including zero, and the question mark ‘?’ stands for any single character.

The files* search query will return files with such names as files, files111, files systems, files_more_worlds, etc.

The files? query will return files with such names as files1, filess, files_, but not files.

You can view detailed information on a service by clicking on the service name or service path in the table. The following information on services is available:

Tab

Available parameters

Info

status,

name,

description,

type,

start mode,

state,

accepted commands,

error control,

exit code,

Win32 exit code,

process.

File

path;

status:

certificate,

file,

type,

cloud,

software type;

hash:

SHA1,

SHA256;

a link to VirusTotal;

properties:

size,

date created,

last modified,

last accessed,

date created;

attributes:

value,

archive,

security;

version:

description,

version,

company,

origin name.

Certificates

status;

date and time;

certificates:

subject,

issuer,

valid from,

valid to,

SHA1 fingerprint,

SHA256 fingerprint,

serial number,

name.