data transfer accelerator.exe

FNet Co., Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Data Transfer Accelerator’.
Publisher:
FNet Co., Ltd.  (signed and verified)

Description:
Data Transfer Accelerator

Version:
3.3.1.0

MD5:
ba1724aca8c73816e3ad7a4668c77198

SHA-1:
4b1e9e615c50df8b5113e715c0e59cf56d3f56ec

SHA-256:
384ae22e549426d633942d2e1d18906a5add63915505f801144040f11518f921

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/30/2024 8:47:43 PM UTC  (today)

File size:
4.9 MB (5,161,064 bytes)

Product version:
1.0.0.0

Copyright:
Copyright (C) 2016 FNet

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\data transfer accelerator\data transfer accelerator.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/5/2015 5:30:00 AM

Valid to:
12/16/2017 5:29:59 AM

Subject:
CN="FNet Co., Ltd.", O="FNet Co., Ltd.", L=Chiayi city, S=Taiwan, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2DC246906BA461BC6ADE35AEE9D16448

File PE Metadata
Compilation timestamp:
6/14/2016 3:06:34 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
49152:T6YvaMP4IsFOOy8j/qIhjpqAqOtjoTy7TJLPjjPSU5W7bZ8dpDrcAK7XiKBoRDJv:WYCU4bYhAqOtiIWyJv

Entry address:
0x1BE4

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, 98, 30, 61, 00, A1, 8B, 30, 61, 00, C1, E0, 02, A3, 8F, 30, 61, 00, 52, 6A, 00, E8, C5, F7, 20, 00, 8B, D0, E8, EE, 08, 1F, 00, 5A, E8, 4C, 08, 1F, 00, E8, 23, 09, 1F, 00, 6A, 00, E8, C4, 1E, 1F, 00, 59, 68, 34, 30, 61, 00, 6A, 00, E8, 9F, F7, 20, 00, A3, 93, 30, 61, 00, 6A, 00, E9, 33, 7E, 1F, 00, E9, F2, 1E, 1F, 00, 33, C0, A0, 7D, 30, 61, 00, C3, A1, 93, 30, 61, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, D8, 00, 00, 00, 0B, C9...
 
[+]

Entropy:
6.8215

Code size:
2.1 MB (2,170,880 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Data Transfer Accelerator

Command:
C:\Program Files\data transfer accelerator\data transfer accelerator.exe


Scan data transfer accelerator.exe - Powered by Reason Core Security