msvhost.exe

msvhost

Call2Customer

It runs as a scheduled task under the Windows Task Scheduler triggered to execute each time a user logs in.
Publisher:
Microsoft  (signed by Call2Customer)

Product:
msvhost

Version:
1.0.0.0

MD5:
38f7cc818eb7b2f09159fbf919f7ac44

SHA-1:
b35f941cf4b9e73d522f2ad909f0bd2a832acf3e

SHA-256:
32666ec4daa7f418466bbdf7f4b266814674623efde20ff02a017c8d35c48760

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 12:48:06 AM UTC  (today)

File size:
613.8 KB (628,520 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Microsoft 2016

Original file name:
msvhost.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\msvhost\msvhost.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/2/2016 5:00:00 PM

Valid to:
5/3/2017 4:59:59 PM

Subject:
CN=Call2Customer, OU=IT, O=Call2Customer, STREET="1st floor, Shivam Plaza, PL Sharma Road", STREET=Meerut, L=Meerut, S=UP, PostalCode=250002, C=IN

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CB24DAF654AF88889B14A8598AFBABA7

File PE Metadata
Compilation timestamp:
11/21/2016 7:41:22 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:Bifnb2xX2ewFdGPa/II9bA+kWFZafWnVN6qN62+N65PN6ti9I+Wxedkg5tzJ:BpX2ewFdGPax9dkkDN6qN6TN65PN66HJ

Entry address:
0x7B18E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.3040

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
484.5 KB (496,128 bytes)

Scheduled Task
Task name:
New Task

Trigger:
Logon (Runs on logon)


Scan msvhost.exe - Powered by Reason Core Security