BtnHnd.exe

LIFEBOOK Application Panel

FUJITSU LIMITED

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘LoadBtnHnd’.
Publisher:
FUJITSU LIMITED  (signed and verified)

Product:
LIFEBOOK Application Panel

Description:
Button handler

Version:
8.2.0.0

MD5:
93c73bf0067c22440c5bf1d4fe3e803c

SHA-1:
168a93fab12818a109f372cf8547e9ff0ec85b06

SHA-256:
792219f58fa6e041f3518e3740047c2640108a090750b00ee68cc76591316d91

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 10:13:20 PM UTC  (today)

File size:
91.6 KB (93,808 bytes)

Product version:
8.2.0.0

Copyright:
Copyright FUJITSU LIMITED 1998-2010.

Original file name:
BtnHnd.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\fujitsu\application panel\btnhnd.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/20/2010 5:00:00 PM

Valid to:
5/21/2011 4:59:59 PM

Subject:
CN=FUJITSU LIMITED, OU=Personal Systems Business Unit, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=FUJITSU LIMITED, L=Kawasaki, S=Kanagawa, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
168ED13CE588CB2A820586BAE18CC3EB

File PE Metadata
Compilation timestamp:
6/14/2010 4:47:29 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:/zDUxDvIg+aDfnC+iw5E0MBhQoLX+Y7AgM7hs1JShG0783iCaEtMhsqxHs1aDfne:rDovIgn0nkOATn57EDM6EsgK

Entry address:
0x12E5

Entry point:
E8, 7F, 04, 00, 00, E9, 6B, FD, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 48, 41, 40, 00, 89, 0D, 44, 41, 40, 00, 89, 15, 40, 41, 40, 00, 89, 1D, 3C, 41, 40, 00, 89, 35, 38, 41, 40, 00, 89, 3D, 34, 41, 40, 00, 66, 8C, 15, 60, 41, 40, 00, 66, 8C, 0D, 54, 41, 40, 00, 66, 8C, 1D, 30, 41, 40, 00, 66, 8C, 05, 2C, 41, 40, 00, 66, 8C, 25, 28, 41, 40, 00, 66, 8C, 2D, 24, 41, 40, 00, 9C, 8F, 05, 58, 41, 40, 00, 8B, 45, 00, A3, 4C, 41, 40, 00, 8B, 45, 04, A3, 50, 41, 40, 00, 8D, 45, 08, A3, 5C, 41, 40...
 
[+]

Entropy:
7.7833  (probably packed)

Code size:
5.5 KB (5,632 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
LoadBtnHnd

Command:
C:\Program Files\fujitsu\application panel\btnhnd.exe


Scan BtnHnd.exe - Powered by Reason Core Security