vssservice.exe

Open Access Software Ltd

It runs as a separate (within the context of its own process) windows Service named “SG Backup VSS Service”.
Publisher:
Open Access Software Ltd  (signed and verified)

MD5:
6520be3d72d683e048dfba7154eeec07

SHA-1:
96884b24f1c9a8d6827f3f0a6d79d8dca4a42385

SHA-256:
1ed001cac5e22e505bf78f3e7000dc8ab47135088402227bd47183b3ce061c22

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 5:09:28 PM UTC  (today)

File size:
208.1 KB (213,136 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\sg backup\vssservice.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
9/24/2012 5:00:00 PM

Valid to:
9/25/2013 4:59:59 PM

Subject:
CN=Open Access Software Ltd, O=Open Access Software Ltd, STREET=2 Muirfield Crescent, STREET=3rd Floor Regent House, L=London, S=London, PostalCode=E149SZ, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
6EAAD3FA2410B901AB3081CDCF8CC046

File PE Metadata
Compilation timestamp:
3/21/2013 4:11:48 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:wo2G0VxLUh7jjCwV88giv5WZKlklHgZ1/cz88tZDvlO9aJQ:woB0SOwGRg52aYvlO9aJQ

Entry address:
0xB584

Entry point:
FF, 25, E6, 1B, 00, 00, 40, 55, 48, 83, EC, 20, 48, 8B, EA, 48, 89, 4D, 38, 48, 89, 4D, 28, 48, 8B, 45, 28, 48, 8B, 08, 48, 89, 4D, 30, 48, 8B, 45, 30, 81, 38, 63, 73, 6D, E0, 74, 0C, C7, 45, 20, 00, 00, 00, 00, 8B, 45, 20, EB, 05, E8, 1B, EA, FF, FF, 48, 83, C4, 20, 5D, C3, 40, 55, 48, 83, EC, 20, 48, 8B, EA, 83, 7D, 20, 00, 75, 15, 4C, 8B, 4D, 78, 44, 8B, 45, 70, 48, 8B, 55, 68, 48, 8B, 4D, 60, E8, 47, E9, FF, FF, 48, 83, C4, 20, 5D, C3, CC, 03, 30, 01, 00, 07, 00, 00, 00, 00, 00, 00, 00, 16, 80, 10, 00...
 
[+]

Entropy:
6.2370

Code size:
46 KB (47,104 bytes)

Service
Display name:
SG Backup VSS Service

Service name:
SG BackupVSSService

Type:
Win32OwnProcess


Scan vssservice.exe - Powered by Reason Core Security