niudpsinksrv.srv

Network Instruments, LLC

It runs as a separate (within the context of its own process) windows Service named “Network Instruments UDP Sink Service”.
Publisher:
Network Instruments, LLC  (signed and verified)

MD5:
4eb42d9bbbcc171f8b1788a2ce304abe

SHA-1:
02e5f7dee8a8d42f80d73cf6cd88f262a0420104

SHA-256:
549cd71fff4116ed09cb9c4ff4babc3b80eb0bd1e3e5d4bbfcb6550002fecabe

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 10:15:18 PM UTC  (today)

File size:
89.3 KB (91,392 bytes)

Common path:
C:\Program Files\observer\niudpsinksrv.srv

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/13/2011 5:30:00 AM

Valid to:
10/30/2014 5:29:59 AM

Subject:
CN="Network Instruments, LLC", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Network Instruments, LLC", S=Minnesota, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1F687F97C7FDCBFF63F002FA4090B2BF

File PE Metadata
Compilation timestamp:
3/11/2013 5:13:52 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
10.0

Entry address:
0x4914

Entry point:
48, 83, EC, 28, E8, 43, 4C, 00, 00, 48, 83, C4, 28, E9, 76, FE, FF, FF, CC, CC, 48, 89, 0D, 71, FD, 00, 00, C3, 48, 89, 5C, 24, 10, 48, 89, 74, 24, 18, 55, 57, 41, 54, 48, 8D, AC, 24, 10, FB, FF, FF, 48, 81, EC, F0, 05, 00, 00, 48, 8B, 05, C4, E6, 00, 00, 48, 33, C4, 48, 89, 85, E0, 04, 00, 00, 41, 8B, F8, 8B, F2, 8B, D9, 83, F9, FF, 74, 05, E8, A5, 4C, 00, 00, 83, 64, 24, 70, 00, 48, 8D, 4C, 24, 74, 33, D2, 41, B8, 94, 00, 00, 00, E8, DA, EC, FF, FF, 4C, 8D, 5C, 24, 70, 48, 8D, 45, 10, 48, 8D, 4D, 10, 4C...
 
[+]

Entropy:
6.2720

Code size:
55 KB (56,320 bytes)

Service
Display name:
Network Instruments UDP Sink Service

Service name:
NiUdpSinkSrv

Description:
Receives UDP packets from a list of UDP ports to suppress ICMP 'port unreacheable' messages being sent back to the sender if no application listens on the listed port(s)

Type:
Win32OwnProcess


Scan niudpsinksrv.srv - Powered by Reason Core Security