CubeRun2.exe

CubeRun2

NRI SecureTechnologies, Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘CubeRun’.
Publisher:
NRI SecureTechnologies,Ltd.  (signed by NRI SecureTechnologies, Ltd.)

Product:
CubeRun2

Version:
3.9.4.0

MD5:
14041584d303c3f9b62c74cb1eca68ee

SHA-1:
927ce012b52596303e8fe6ede2e318b951e5adc0

SHA-256:
1ca25f37f5b9b6ed0790faab19f42cac6af264e680b0f91cbdbf7daca5565c26

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/13/2025 11:14:56 PM UTC  (a few moments ago)

File size:
266.3 KB (272,728 bytes)

Product version:
3.9.4.0N

Copyright:
(C)2014 NRI SecureTechnologies,Ltd.All rights reserved.

Original file name:
CubeRun2.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\nri securetechnologies\pc_check\cuberun2.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/29/2014 8:00:00 AM

Valid to:
1/25/2016 7:59:59 AM

Subject:
CN="NRI SecureTechnologies, Ltd.", OU=Security Solution Department, O="NRI SecureTechnologies, Ltd.", L=Chiyoda-ku, S=Tokyo, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1CA422FF11CE903F1975B446B8A0B6FE

File PE Metadata
Compilation timestamp:
9/2/2015 5:34:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:5dM8PyEkGsxA0RRdpBGmEhTB/wz5yO97NQH:jMysxAgBR+T9wFSH

Entry address:
0x271C1

Entry point:
E8, FE, 03, 00, 00, E9, 35, FD, FF, FF, CC, CC, CC, CC, CC, 68, 6B, 6D, 42, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, EC, C5, 43, 00, 31, 45, FC, 33, C5, 89, 45, E4, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, E4, 33, CD, E8, F6, F9, FF, FF, E9, 5E, 01, 00, 00, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 48, D2, 43, 00, 89, 0D, 44, D2, 43, 00, 89, 15, 40, D2, 43, 00...
 
[+]

Entropy:
6.2146

Code size:
176 KB (180,224 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
CubeRun

Command:
"C:\Program Files\nri securetechnologies\pc_check\cuberun2.exe" \s


Scan CubeRun2.exe - Powered by Reason Core Security