nmservermon.exe

NetModem

PC Micro Systems Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NetModem Server Monitor’.
Publisher:
PC Micro  (signed by PC Micro Systems Inc.)

Product:
NetModem

Description:
NetModem Server

Version:
3,5,1,0

MD5:
166528002298098f706cbccf602462af

SHA-1:
ee4cc91ba3da35f27eeb49f56c9d9b5523e2ef98

SHA-256:
c521299777bb0b0e60b9d2a050268da130352319d983a530ed7a8cd17ce71ecb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 1:35:22 AM UTC  (today)

File size:
240.5 KB (246,296 bytes)

Product version:
3,5,1,0

Copyright:
Copyright © 1997-2008 Odin Software

Trademarks:
NetModem is a Trademark of PC Micro Systems, Inc.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\netmodem\server\nmservermon.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/19/2008 3:15:10 PM

Valid to:
3/19/2009 2:15:10 PM

Subject:
E=support@pcmicro.com, CN=PC Micro Systems Inc., O=PC Micro Systems Inc., C=US

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000118C6A477F8

File PE Metadata
Compilation timestamp:
1/30/2009 3:28:20 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x1F813

Entry point:
E8, 0C, 05, 00, 00, E9, 35, FD, FF, FF, CC, CC, CC, 68, 77, F8, 41, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 20, 00, 43, 00, 31, 45, FC, 33, C5, 89, 45, E4, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, E4, 33, CD, E8, C2, FB, FF, FF, E9, 7A, 02, 00, 00, FF, 74, 24, 10, FF, 74, 24, 10, FF, 74, 24, 10, FF, 74, 24, 10, 68, 34, F4, 41, 00, 68, 20, 00, 43, 00, E8, 22...
 
[+]

Entropy:
6.0096

Code size:
137.5 KB (140,800 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NetModem Server Monitor

Command:
C:\Program Files\netmodem\server\nmservermon.exe -service


Scan nmservermon.exe - Powered by Reason Core Security