snmvtsvc.exe

SMServer

It runs as a separate (within the context of its own process) windows Service named “SMServer”.
Scan snmvtsvc.exe - Powered by Reason Core Security
Publisher:
SMServer

Product:
SMServer

Version:
2,2010,218

MD5:
04fcc3d2e033cb215f78e9d4409d383e

SHA-1:
4ac0e372f6e9fbc3a97ca4a26be4f0420ac2e5d5

SHA-256:
f7d827af269965942517ea0c5bfd65b233c2c6223c22086b7020eeade84f4f4d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/7/2016 3:37:20 PM UTC  (today)

File size:
240 KB (245,760 bytes)

Product version:
2,2010,218

Copyright:
(c) SMServer

Original file name:
SMServer.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Windows\System32\snmvtsvc.exe

File PE Metadata
Compilation timestamp:
1/16/2011 12:58:55 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:DLNiOFm/BwCDV5dPs/un9BThLV2wRUzjDTiUHcSH4b9DMoQXZUYPIX5l0+:1Nm/em9BT9dR0jaUHAb9DMX6/zd

Entry address:
0x1C335

Entry point:
E8, AD, 91, 00, 00, E9, 17, FE, FF, FF, 3B, 0D, 84, 95, 43, 00, 75, 02, F3, C3, E9, 2D, 92, 00, 00, CC, CC, 83, EC, 14, 53, 8B, 5C, 24, 20, 55, 56, 8B, 73, 08, 33, 35, 84, 95, 43, 00, 57, 8B, 06, 83, F8, FE, C6, 44, 24, 13, 00, C7, 44, 24, 18, 01, 00, 00, 00, 8D, 7B, 10, 74, 0D, 8B, 4E, 04, 03, CF, 33, 0C, 38, E8, B7, FF, FF, FF, 8B, 4E, 0C, 8B, 46, 08, 03, CF, 33, 0C, 38, E8, A7, FF, FF, FF, 8B, 44, 24, 28, F6, 40, 04, 66, 0F, 85, 1F, 01, 00, 00, 8B, 6B, 0C, 83, FD, FE, 8B, 4C, 24, 30, 8D, 54, 24, 1C, 89...
 
[+]

Entropy:
6.2977

Code size:
188 KB (192,512 bytes)

Service
Display name:
SMServer

Type:
Win32OwnProcess

Depends on:
RPCSS


Scan snmvtsvc.exe - Powered by Reason Core Security