CECAPLF.exe

CECAPLF

Chicony Electronics Co., Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘CECAPLF’.
Publisher:
Chicony  (signed by Chicony Electronics Co., Ltd.)

Product:
CECAPLF

Description:
Chicony auto frequency setting tool.

Version:
0, 6, 0, 1

MD5:
c08e8e86b99a551fb569c438491bd527

SHA-1:
61ad394879a1b13ad7fedfdf4337629c246f4dd7

SHA-256:
09adb52d405e71a28a6e360ae435ba1dfc3a391e30c0a17e5a432c20b4a0a36a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
8/16/2018 3:17:30 AM UTC  (a few moments ago)

File size:
271.5 KB (277,983 bytes)

Product version:
0, 6, 0, 1

Copyright:
Copyright c 2010

Original file name:
CECAPLF.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Traditional, Taiwan)

Common path:
C:\Program Files\chiconycam\cecaplf.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/29/2009 2:00:00 AM

Valid to:
10/3/2012 1:59:59 AM

Subject:
CN="Chicony Electronics Co., Ltd.", OU=Keyboard, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Chicony Electronics Co., Ltd.", L=Taipei, S=Taiwan, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5D6BA393E0AB0C955E721020C3BC8CB8

File PE Metadata
Compilation timestamp:
4/13/2010 1:36:15 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x2BF4

Entry point:
BB, 82, 60, ED, C3, 93, E9, 20, 01, 00, 00, 76, 1C, 7F, 7B, 27, AB, 7F, 7B, 6F, D9, 00, FF, FF, 7F, FF, FF, 36, FF, FF, FF, 5E, 30, 35, 30, 2F, 30, 38, 36, 35, FF, FF, FF, 73, 60, 79, 64, 61, 60, 6C, 60, 2D, 63, 6B, 6B, FF, FF, FF, FF, 5B, FF, FF, FF, 45, 71, 64, 64, 4B, 68, 61, 71, 60, 71, 78, FF, 42, 71, 64, 60, 73, 64, 43, 68, 71, 64, 62, 73, 6E, 71, 78, 40, FF, FF, FF, FF, 46, 64, 73, 56, 68, 6D, 63, 6E, 76, 72, 43, 68, 71, 64, 62, 73, 6E, 71, 78, 40, FF, FF, FF, FF, 46, 64, 73, 4C, 6E, 63, 74, 6B, 64...
 
[+]

Entropy:
6.7375

Code size:
36 KB (36,864 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
CECAPLF

Command:
C:\Program Files\chiconycam\cecaplf.exe


Scan CECAPLF.exe - Powered by Reason Core Security