neservice64.exe

NetExtender Windows NT Service

SonicWall L.L.C.

It runs as a windows Service named “SonicWALL NetExtender Service”.
Publisher:
Dell Inc.  (signed by SonicWall L.L.C.)

Product:
NetExtender Windows NT Service

Description:
SonicWALL NetExtender Windows NT Service

Version:
8, 0, 240, 1

MD5:
49d0d3c8204ac3f2447066d2728f42f6

SHA-1:
a055d4cac54f1ff0656f4f6847de081889752596

SHA-256:
70f277c3e8e090dccd68d5543ad7f670bc2a571a6fa4d394194a585ae85c7415

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 7:27:32 PM UTC  (today)

File size:
732.5 KB (750,096 bytes)

Product version:
8, 0, 240, 1

Copyright:
Copyright 2015 Dell Inc.

Original file name:
NEService.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\sonicwall\ssl-vpn\netextender\neservice64.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/3/2014 9:00:00 AM

Valid to:
9/3/2017 8:59:59 AM

Subject:
CN=SonicWall L.L.C., O=SonicWall L.L.C., L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4B84BF84FBA033D3455FEDD3346A2C2A

File PE Metadata
Compilation timestamp:
12/18/2015 11:30:46 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
8.0

Entry address:
0x60C60

Entry point:
48, 83, EC, 28, E8, F7, E5, 00, 00, 48, 83, C4, 28, E9, 4E, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 4C, 8B, C1, 0F, B6, 01, 48, 83, C1, 01, 84, C0, 75, F5, 66, 90, 48, 83, E9, 01, 49, 3B, C8, 74, 08, 38, 11, 75, F3, 48, 8B, C1, C3, 38, 11, 75, 04, 48, 8B, C1, C3, 33, C0, C3, CC, CC, CC, CC, 40, 53, 48, 83, EC, 70, 48, 85, D2, 48, 63, D9, C6, 44, 24, 68, 00, 0F, 85, A3, 00, 00, 00, E8, 44, 62, 00, 00, 48, 89, 44, 24, 60, 4C, 8B, D8, 48, 8B, 90, C0, 00, 00, 00, 48, 3B, 15, 9E, B8...
 
[+]

Entropy:
6.2595

Code size:
484 KB (495,616 bytes)

Service
Display name:
SonicWALL NetExtender Service

Service name:
SONICWALL_NetExtender

Type:
Win32OwnProcess, InteractiveProcess


Scan neservice64.exe - Powered by Reason Core Security