FireflyShell.exe

Firefly Media Server

Firefly Media Services

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘FireflyShell’.
Publisher:
Roku LLC  (signed by Firefly Media Services)

Product:
Firefly Media Server

Description:
FireflyShell

Version:
1.0 svn-1696

MD5:
11a01933a9e39cfa8d2c9e777025dfd9

SHA-1:
4e04b1100922a6dd6bd6cd7a35983d699a9b6f6c

SHA-256:
31d5211ec3c0ca7b829e9072b5e7a5e445aee33eb4a2514f31f610b3da603ea4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 10:07:29 AM UTC  (today)

File size:
243.6 KB (249,448 bytes)

Product version:
1.0 svn-1696

Copyright:
Copyright 2006 Roku LLC

Original file name:
FireflyShell.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\firefly media server\fireflyshell.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
3/14/2007 1:00:00 AM

Valid to:
3/14/2008 12:59:59 AM

Subject:
CN=Firefly Media Services, O=Firefly Media Services, STREET=106 Rimdale, L=Universal City, S=Texas, PostalCode=78148, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
09DB81390F86AAB51F6CBAC220FC23FC

File PE Metadata
Compilation timestamp:
10/29/2007 7:14:19 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:SNvBXb3w6VcX0TmECNwnJk6cyec2kP7rhLVgApM9XyHxDOJYvf:S9rOApxDOJY

Entry address:
0xE5E3

Entry point:
E8, 9C, 03, 00, 00, E9, 36, FD, FF, FF, CC, CC, CC, 68, C4, E1, 40, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, C4, 5A, 41, 00, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 28, 5D, 41, 00, 89, 0D, 24, 5D, 41, 00, 89, 15, 20, 5D, 41, 00...
 
[+]

Code size:
60 KB (61,440 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
FireflyShell

Command:
"C:\Program Files\firefly media server\fireflyshell.exe" -q


The file FireflyShell.exe has been discovered within the following program.

Firefly Media Server  by Ron Pedde
www.fireflymediaserver.org
About 9% of users remove it
 
Powered by Should I Remove It?

Scan FireflyShell.exe - Powered by Reason Core Security