NRService.exe

NeoRouter Mesh

NeoRouter Inc.

It runs as a separate (within the context of its own process) windows Service named “NeoRouter Client Service”.
Publisher:
NeoRouter Inc.  (signed and verified)

Product:
NeoRouter Mesh

Description:
NeoRouter Client Service

Version:
1.6.2.3138

MD5:
d5ca283f67db68e3dec9af1ea99c350a

SHA-1:
b50dee08c610362abc05974a2c191a532dfddc8b

SHA-256:
63361f4020988746dd0a0eda7ff29e1797bcbd0ee33f4e7ef707428d579f2805

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 4:05:13 AM UTC  (today)

File size:
1.9 MB (1,947,296 bytes)

Product version:
1.6.2.3138

Copyright:
Copyright © 2011 NeoRouter Inc.

Original file name:
NRService.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\zebranetworksystems\neorouter\nrservice.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
8/2/2011 8:53:49 AM

Valid to:
9/27/2012 4:19:28 PM

Subject:
CN=NeoRouter Inc., O=NeoRouter Inc., L=Toronto, S=Ontario, C=CA

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121091FF6DBDDE9216C2A56BB5E2BEDD8F3

File PE Metadata
Compilation timestamp:
12/6/2011 1:29:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
24576:B2AqjDyGaYoK5ZTIuam5qsW0y+0eYpPINdxH6V2M/7Kh1yrvj24HquUizcBnbPi1:zmZcJ0m3pPgk/7KuriMIqnpnIAfaA

Entry address:
0x7C93A

Entry point:
E8, D2, 7E, 00, 00, E9, 40, FE, FF, FF, 8B, 44, 24, 04, 33, C9, 3B, 04, CD, 78, AB, 5C, 00, 74, 12, 41, 83, F9, 2D, 72, F1, 8D, 48, ED, 83, F9, 11, 77, 0C, 6A, 0D, 58, C3, 8B, 04, CD, 7C, AB, 5C, 00, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, C3, E8, C5, 63, 00, 00, 85, C0, 75, 06, B8, E0, AC, 5C, 00, C3, 83, C0, 08, C3, E8, B2, 63, 00, 00, 85, C0, 75, 06, B8, E4, AC, 5C, 00, C3, 83, C0, 0C, C3, 56, E8, E7, FF, FF, FF, 8B, 4C, 24, 08, 51, 89, 08, E8, 8D, FF, FF, FF, 59, 8B, F0...
 
[+]

Entropy:
6.5665

Code size:
1.4 MB (1,470,464 bytes)

Service
Display name:
NeoRouter Client Service

Service name:
NRClientService

Description:
The NeoRouter Client Service.

Type:
Win32OwnProcess


Scan NRService.exe - Powered by Reason Core Security