BE.EXE

Background Crypt Engine

CE-Infosys GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Disk Utility’.
Publisher:
CE-Infosys GmbH  (signed and verified)

Product:
Background Crypt Engine

Description:
Utility for monitoring background encryption/decryption progress

Version:
2, 3, 10, 0

MD5:
523e555ca9e856758eaa6c49a8e4dfdf

SHA-1:
979d63adf36722f30018ee339c048a90e36b900b

SHA-256:
08ceb4f6ea50f0dc920a8ef6f8350b94f1ab3422054820a5866cdb91577d22b1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 6:26:10 AM UTC  (today)

File size:
442.3 KB (452,928 bytes)

Product version:
0, 0, 0, 0

Copyright:
This product is a part of the CompuSec Security Suite

Original file name:
BE.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\ce-infosys\compusec\be.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
1/19/2010 3:25:09 PM

Valid to:
1/19/2013 3:25:04 PM

Subject:
E=info@ce-infosys.com, CN=CE-Infosys GmbH, O=CE-Infosys GmbH, L=Bodenheim, S=Rheinland-Pfalz, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
010000000001264723FE90

File PE Metadata
Compilation timestamp:
3/31/2010 9:09:37 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:6P9mI77J70X4WDjNyO/ZZZOqwkTwnAo9fX1X/0VqTu5d78TRo8XWfQ:YmAloXdN8qf0Ao9vqkq8q9Q

Entry address:
0x350B2

Entry point:
E8, 62, CF, 00, 00, E9, 16, FE, FF, FF, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, D4, 36, 46, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, D4, 36, 46, 00, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B...
 
[+]

Code size:
308 KB (315,392 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Disk Utility

Command:
C:\Program Files\ce-infosys\compusec\be.exe


Scan BE.EXE - Powered by Reason Core Security