hvk.exe

Hot Virtual Keyboard

Comfort Software Group

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘hvk’.
Publisher:
Comfort Software Group  (signed and verified)

Product:
Hot Virtual Keyboard

Description:
Virtual Keyboard for Windows

Version:
5.3.1.0

MD5:
5bc3dc6b458e4da006394771de9f31fe

SHA-1:
ba916bda60886282f55172b32aba27fdedada167

SHA-256:
8d3cb48a9276ff5b56a8a2e437bd206421cc816b9ab9a68e97e1f8a07674708a

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/26/2024 8:30:00 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Sality
160111-0

File size:
3.8 MB (3,960,648 bytes)

Product version:
5.3

Copyright:
Sergey Koshkin

Trademarks:
Comfort Software

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\hotvirtualkeyboard\hvk.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/24/2010 9:00:00 PM

Valid to:
5/25/2011 8:59:59 PM

Subject:
CN=Comfort Software Group, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Comfort Software Group, L=Syktyvkar, S=Komi, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
22EC870B8B9E84B0EB7FB84D427B6F35

File PE Metadata
Compilation timestamp:
11/17/2010 5:07:54 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:VnKbaALjxKtSQ/o6t6h7VnwNKBdEZqWGuGUu:VswtSR6t6fwabnd

Entry address:
0x229E40

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, AC, 70, 62, 00, E8, DB, DF, DD, FF, 8B, 1D, 5C, 44, 64, 00, 8B, 03, BA, E8, A0, 62, 00, E8, E9, 11, E6, FF, 8B, 03, E8, 2A, 17, E6, FF, B8, 08, A1, 62, 00, E8, 94, DF, FE, FF, E8, AB, 5D, FC, FF, 84, C0, 0F, 84, 56, 02, 00, 00, 8B, 03, C6, 40, 5B, 00, 8B, 03, B2, 01, E8, 3C, 36, E6, FF, 8B, 0D, 68, 3D, 64, 00, 8B, 03, 8B, 15, B0, BB, 59, 00, E8, 09, 17, E6, FF, 8B, 0D, 50, 3D, 64, 00, 8B, 03, 8B, 15, 64, E1, 5E, 00, E8, F6, 16, E6, FF, 8B, 0D, B4, 47, 64, 00, 8B, 03, 8B, 15...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.2 MB (2,264,064 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
hvk

Command:
C:\Program Files\hotvirtualkeyboard\hvk.exe


Scan hvk.exe - Powered by Reason Core Security