nrservice.exe

TamoSoft Ltd

It runs as a separate (within the context of its own process) windows Service named “NRServiceSvc”.
Publisher:
TamoSoft Ltd  (signed and verified)

Version:
3.0.0.851

MD5:
ac012082e3706136571ef83766734b44

SHA-1:
39a570367a43b22242a10071f91eb2d03b4550ec

SHA-256:
e86fbc51b4a4af3f35825fb425de4a286964969d7eea151e3362cc3ddbaadbc6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
8/16/2025 6:50:09 PM UTC  (today)

File size:
5.9 MB (6,176,640 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\netresident\nrservice.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
8/24/2015 8:00:00 PM

Valid to:
11/23/2018 6:59:59 PM

Subject:
CN=TamoSoft Ltd, O=TamoSoft Ltd, L=Christchurch, S=New Zealand, C=NZ

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
541EE936AD81A965752DECED0DC200FF

File PE Metadata
Compilation timestamp:
2/13/2017 3:21:27 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x979338

Entry point:
68, F5, 15, B9, C6, 9C, 57, E9, 9C, 23, 32, 00, BC, BB, 95, 2C, 8C, 59, 36, C5, 16, E0, 32, EC, 90, 73, 99, 65, B7, 15, AF, 6F, 85, 59, 8B, 25, 87, 2D, F8, 69, C3, 0B, F9, 3F, C5, 69, 8C, 2D, C1, 75, 13, 92, 17, 78, 00, CC, 3E, 80, C7, 65, C6, 00, 9C, 31, 1E, 6C, AA, AC, A3, 9D, 2E, A6, 00, 49, C5, 08, 54, 87, 48, 18, 41, C4, DF, 9F, 50, 54, 6F, 09, B6, 59, 37, DC, 06, DB, 75, CD, CD, 13, B5, 5C, E6, 76, C8, 61, 99, B3, D8, 31, C3, 18, 19, 38, 6F, 9A, E3, 35, CD, 1D, 77, 6C, BE, 6C, 5B, E9, 1C, C5, C2, 1C...
 
[+]

Entropy:
7.9221  (probably packed)

Code size:
4.9 MB (5,135,872 bytes)

Service
Display name:
NRServiceSvc

Type:
Win32OwnProcess


Scan nrservice.exe - Powered by Reason Core Security