smmonitor.exe

NetApp Inc

It runs as a separate (within the context of its own process) windows Service named “Storage Manager Event Monitor”.
Publisher:
NetApp Inc  (signed and verified)

MD5:
5210f4da409dfdaee9cb6b7522405f1c

SHA-1:
2bebf9844c5b3279b694f7a10045467bb675be11

SHA-256:
96d651bbf772f7eb7ccf92c46187b6e9db8172945728b252297c43a15ea7128a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/3/2024 4:28:32 AM UTC  (today)

File size:
686.3 KB (702,776 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\storagemanager\client\monitor\smmonitor.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/24/2014 6:00:00 PM

Valid to:
9/10/2015 5:59:59 PM

Subject:
CN=NetApp Inc, O=NetApp Inc, L=Sunnyvale, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0DF57D3077D75CF3BC627969E635A1AF

File PE Metadata
Compilation timestamp:
2/23/2015 12:29:55 PM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
11.0

CTPH (ssdeep):
12288:hOCc5vliuRihiiMMRiHSFTGTQlg7l6G0YcYqi9VPAhHTCX/DxfBHEKOh77rMh2xF:h3cqi9VPAhHQxBHkZo6F

Entry address:
0x38A4C

Entry point:
48, 83, EC, 28, E8, 8F, E1, 00, 00, 48, 83, C4, 28, E9, F6, FD, FF, FF, CC, CC, 48, 85, C9, 74, 68, 88, 54, 24, 10, 48, 83, EC, 28, 81, 39, 63, 73, 6D, E0, 75, 54, 83, 79, 18, 04, 75, 4E, 8B, 41, 20, 2D, 20, 05, 93, 19, 83, F8, 02, 77, 41, 48, 8B, 41, 30, 48, 85, C0, 74, 38, 48, 63, 50, 04, 85, D2, 74, 19, 48, 8B, C2, 48, 8B, 51, 38, 48, 03, D0, 48, 8B, 49, 28, FF, D2, 90, EB, 1D, E8, 2B, 99, 00, 00, 90, F6, 00, 10, 74, 12, 48, 8B, 41, 28, 48, 8B, 08, 48, 85, C9, 74, 06, 48, 8B, 01, FF, 50, 10, 48, 83, C4...
 
[+]

Entropy:
5.7075

Code size:
498 KB (509,952 bytes)

Service
Display name:
Storage Manager Event Monitor

Service name:
SMmonitor

Description:
Monitors all activity on a managed storage array, even if the Client Window is not open.

Type:
Win32OwnProcess


Scan smmonitor.exe - Powered by Reason Core Security