vsserv.exe

Tech Matrix Infosolutions Inc

It runs as a separate (within the context of its own process) windows Service named “YodaShield Total Security 2014 Virus Shield”.
Publisher:
YodaShield Total Security 2014  (signed by Tech Matrix Infosolutions Inc)

Product:
YodaShield Total Security 2014

Description:
YodaShield Total Security 2014 Security Service

Version:
17.21.0.908 102416

MD5:
0059764347948ad759d4d128ae2dd07b

SHA-1:
b5d5e072e9a94c7ed7e0fd49f3cf0d949e111084

SHA-256:
8f2a2f3401ae00a27a8c8d124d470b8622641e35ecaa68d4957931106761362f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 2:46:23 AM UTC  (today)

File size:
1.4 MB (1,506,752 bytes)

Product version:
17.21.0.908 102416

Copyright:
©TechMatrix Info Solutions

Original file name:
vsserv.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\yodashield total security 2014\yodashield total security 2014\vsserv.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/20/2013 6:00:00 PM

Valid to:
11/21/2014 5:59:59 PM

Subject:
CN=Tech Matrix Infosolutions Inc, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Tech Matrix Infosolutions Inc, L=New York, S=New York, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6A3942872A796031DD740CF3447B910C

File PE Metadata
Compilation timestamp:
10/23/2013 5:27:55 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:3HNZTUfoZdQ0XSMlypt/ntpFHxw3NBYbdlJ:LTldhXSMlypvzRw3NBoP

Entry address:
0xC7D00

Entry point:
48, 83, EC, 28, E8, 73, 03, 00, 00, 48, 83, C4, 28, E9, DA, FC, FF, FF, FF, 25, B0, 0E, 0A, 00, 48, 89, 4C, 24, 08, 48, 81, EC, 88, 00, 00, 00, 48, 8D, 0D, B5, 03, 09, 00, FF, 15, 5F, 0A, 0A, 00, 48, 8B, 05, A0, 04, 09, 00, 48, 89, 44, 24, 58, 45, 33, C0, 48, 8D, 54, 24, 60, 48, 8B, 4C, 24, 58, E8, AD, 14, 01, 00, 48, 89, 44, 24, 50, 48, 83, 7C, 24, 50, 00, 74, 41, 48, C7, 44, 24, 38, 00, 00, 00, 00, 48, 8D, 44, 24, 48, 48, 89, 44, 24, 30, 48, 8D, 44, 24, 40, 48, 89, 44, 24, 28, 48, 8D, 05, 60, 03, 09, 00...
 
[+]

Entropy:
5.5567

Code size:
977.5 KB (1,000,960 bytes)

Service
Display name:
YodaShield Total Security 2014 Virus Shield

Service name:
VSSERV

Type:
Win32OwnProcess

Group:
System Reserved


Scan vsserv.exe - Powered by Reason Core Security