esvc.exe

esvc

IProNet Sistemas, S.A.

It runs as a separate (within the context of its own process) windows Service named “e-netcamCLIENT Pro Recordings and Alarms Service”.
Publisher:
IProNet  (signed by IProNet Sistemas, S.A.)

Product:
esvc

Version:
6.00.0010

MD5:
334e47209b3f93777db694827ea6a7a4

SHA-1:
ca23e7c00aed5a0a2695649043b7c48e6bca19d1

SHA-256:
96f57bfae4149744f6e48b4199d009cb845c0dbea287c4fcabf6386df155011d

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/28/2024 12:38:00 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
probably BACKDOOR.Trojan
9.0.1.05190

F-Prot
W32/VB-Backdoor-HRS-based!Maxim
4.6.5.141

File size:
421.4 KB (431,560 bytes)

Product version:
6.00.0010

Original file name:
esvc.exe

File type:
Executable application (Win32 EXE)

Language:
Spanish

Common path:
C:\Program Files\ipronet\e-netcamclient 6.0\esvc.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
7/3/2009 1:00:00 AM

Valid to:
7/14/2010 12:59:59 AM

Subject:
CN="IProNet Sistemas, S.A.", OU=WINDOWS APLICATION DEVELOPMENT, O="IProNet Sistemas, S.A.", L=Bilbao, S=Bizkaia, C=ES

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
4CBE8A01684B93517AC3E5975A379F1A

File PE Metadata
Compilation timestamp:
1/4/2010 9:07:51 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:plkpyb5TQ/ycG4OpLcVjbAklO56bEQEpYWMOnzvulUF6Pgt9+V+VNr3UEoRRXnm7:QQq/y/sbEQeYWMOnziRXna

Entry address:
0x3F40

Entry point:
68, 20, 48, 40, 00, E8, EE, FF, FF, FF, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 4E, 03, 30, 19, 54, F2, C6, 4E, A5, C3, 28, EB, D8, 78, 24, 9F, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 0A, 27, 20, 20, 20, 20, 65, 5F, 6E, 65, 74, 63, 61, 6D, 53, 56, 43, 00, 52, 63, 64, 28, 00, 29, 0D, 0A, 27, 20, 20, 20, C0, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 22, 00, 00, 00, A8, 64, 60, C0, 11, 86, E1, 43, 8B, 1A, 6E, EA, 4B, BD, 12, 26, 01, 00, 00, 00, A0, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
400 KB (409,600 bytes)

Service
Display name:
e-netcamCLIENT Pro Recordings and Alarms Service

Service name:
e_ncsvcpro

Type:
Win32OwnProcess

Depends on:
e_diskmonpro


Scan esvc.exe - Powered by Reason Core Security