esvc.exe

esvc

IProNet Sistemas, S.A.

It runs as a separate (within the context of its own process) windows Service named “e-netcamCLIENT Pro Recordings and Alarms Service”.
Publisher:
IProNet  (signed by IProNet Sistemas, S.A.)

Product:
esvc

Version:
5.00.0038

MD5:
c1f397bf0d1bbf076d9a7710755f32b6

SHA-1:
beb3ef7319a6f009d88c79ee9a278c2c9b581b30

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/28/2024 12:51:02 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
BACKDOOR.Trojan
9.0.1.051

F-Prot
W32/VB-Backdoor-HRS-based
v6.4.6.1.107

File size:
505.4 KB (517,576 bytes)

Product version:
5.00.0038

Original file name:
esvc.exe

File type:
Executable application (Win32 EXE)

Language:
Spanish

Common path:
C:\Program Files\ipronet\e-netcamclient 5.0\esvc.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
7/3/2009 2:00:00 AM

Valid to:
7/14/2010 1:59:59 AM

Subject:
CN="IProNet Sistemas, S.A.", OU=WINDOWS APLICATION DEVELOPMENT, O="IProNet Sistemas, S.A.", L=Bilbao, S=Bizkaia, C=ES

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
4CBE8A01684B93517AC3E5975A379F1A

File PE Metadata
Compilation timestamp:
7/6/2009 11:13:23 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x4438

Entry point:
68, C4, 4C, 40, 00, E8, F0, FF, FF, FF, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 14, F5, D3, A9, A4, F8, C9, 4D, B8, F7, D4, A1, BE, B0, 2A, A5, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 41, 00, 06, 50, 93, 02, 65, 5F, 6E, 65, 74, 63, 61, 6D, 53, 56, 43, 00, 54, 84, B3, 01, 00, 00, 00, 00, D0, 49, AD, 01, C0, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 09, 00, 00, 00, 47, 74, 14, C2, 2C, 06, 38, 43, 9E, 31, 75, F5, B7, 37, 2E, A7, 01, 00, 00, 00, A0, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
484 KB (495,616 bytes)

Service
Display name:
e-netcamCLIENT Pro Recordings and Alarms Service

Service name:
e_ncsvcpro

Type:
Win32OwnProcess

Depends on:
e_diskmonpro


Scan esvc.exe - Powered by Reason Core Security