cirrusprocessing.exe

Datafiniti, LLC

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘CirrusProcessing’.
Publisher:
Datafiniti, LLC  (signed and verified)

Version:
1.0.0.0

MD5:
7e81442051b02e31858f0b9aa8c998aa

SHA-1:
311698a9d832ba75193ac431d65081aa645d654a

SHA-256:
8ae1ff6e4f3e79dd0d1b44953fcd8a65db754f8601aacc923ccbd3819f8f34dd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 4:02:55 PM UTC  (today)

File size:
1.3 MB (1,404,928 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\cirrus processing\cirrusprocessing.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
10/2/2012 5:30:00 AM

Valid to:
9/8/2013 5:29:59 AM

Subject:
CN="Datafiniti, LLC", OU=Digital ID Class 3 - Java Object Signing, O="Datafiniti, LLC", L=Houston, S=Texas, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1DB498F52DE63D0D09A29CB34DDF18F8

File PE Metadata
Compilation timestamp:
1/10/2014 5:47:44 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:/KqjgqFffMNF1gk7qIhizwmhxjVSZBOSjpAkV/W/mh3E9ru:/VKNLJDobSZISjphW/EE9K

Entry address:
0x1291B8

Entry point:
55, 8B, EC, 83, C4, F0, B8, 70, 07, 52, 00, E8, 30, 1E, EE, FF, 68, 28, 92, 52, 00, 6A, 00, 6A, 00, E8, 4E, 50, EE, FF, E8, 69, 51, EE, FF, 3D, B7, 00, 00, 00, 74, 3E, A1, F0, EA, 52, 00, 8B, 00, E8, 7E, 13, FE, FF, A1, F0, EA, 52, 00, 8B, 00, 33, D2, E8, 70, 30, FE, FF, 8B, 0D, 80, EC, 52, 00, A1, F0, EA, 52, 00, 8B, 00, 8B, 15, F4, F1, 51, 00, E8, 70, 13, FE, FF, A1, F0, EA, 52, 00, 8B, 00, E8, BC, 14, FE, FF, E8, 6B, DE, ED, FF, 00, 00, 00, 50, 00, 6C, 00, 75, 00, 72, 00, 61, 00, 6C, 00, 5F, 00, 69, 00...
 
[+]

Entropy:
6.5746

Developed / compiled with:
Microsoft Visual C++

Code size:
1.2 MB (1,210,880 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
CirrusProcessing

Command:
C:\Program Files\cirrus processing\cirrusprocessing.exe


Scan cirrusprocessing.exe - Powered by Reason Core Security